Hacking Tools, Hacker News & Cyber Security
ID: 797f0e4e-0acc-5e9f-b030-cc00be4908a5
STIX ID: report--797f0e4e-0acc-5e9f-b030-cc00be4908a5
Feed Name: Darknet
DumpBrowserSecrets is a Windows post‑exploitation tool that extracts saved credentials, session cookies, OAuth refresh tokens, credit card data, autofill entries, and browsing history from Chromium‑based and Firefox browsers by spawning a headless browser and injecting a DLL to bypass App‑Bound Encryption (via the IElevator COM interface and Early Bird APC injection) or by reading/decrypting DPAPI/NSS stores; the report describes supported browsers, extracted data, evasion techniques, an attack scenario, and recommendations for detection and mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
