logo

Hacking Tools, Hacker News & Cyber Security

ID: 7cc2703f-b727-53a2-8a5b-3b3d2900ce9f

STIX ID: report--7cc2703f-b727-53a2-8a5b-3b3d2900ce9f

Feed Name: Darknet

Threat Score
75/100

Date Published: 2016-01-18

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a publicly available Windows post-exploitation tool that harvests browser-stored credentials and session artifacts (saved passwords, cookies, OAuth refresh tokens, credit cards, autofill data, history, and bookmarks) from Chrome, Edge, Brave (using an App-Bound Encryption bypass), Opera/Opera GX/Vivaldi (DPAPI), and Firefox (NSS). It achieves App-Bound Encryption decryption by spawning a headless Chromium instance and injecting a DLL to access the IElevator COM interface, includes several runtime evasion techniques, outputs structured JSON for red-team use, and presents a credible risk for lateral movement and cloud account takeover if used by adversaries.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.