A pcap Network Traffic Replay Tool for Windows
ID: 7ebae076-4429-5817-b7df-76ca282b58fb
STIX ID: report--7ebae076-4429-5817-b7df-76ca282b58fb
Feed Name: Darknet
Threat Score
DumpBrowserSecrets is a post-exploitation credential-harvesting tool that extracts saved credentials, session cookies, OAuth refresh tokens, credit card data and browsing artifacts from major Windows browsers by using DLL injection into a headless Chromium process to bypass App-Bound Encryption (IElevator COM) and handling DPAPI/NSS for other browsers; it is designed for red team/assumed-breach use and includes multiple evasion techniques while outputting structured JSON.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
