Regional Trojan Threat Targeting Online Banks
ID: 750421cd-921b-57c5-9de0-7e84d45b69cd
STIX ID: report--750421cd-921b-57c5-9de0-7e84d45b69cd
Feed Name: Darknet
Threat Score
DumpBrowserSecrets is a Windows post‑exploitation tool that harvests browser-stored credentials and session tokens from major Chromium- and Gecko-based browsers by combining a compiled executable and an injected DLL to bypass App‑Bound Encryption (Chrome 127+) and retrieve DPAPI/NSS keys; it outputs structured JSON and includes operational evasion features for red‑team usage and testing detection controls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
