logo

Apple, Facebook & Hundreds More Hacked By 0-Day Java Exploit

ID: 84dbb6c0-b569-547e-9cfd-ccfbea91df2c

STIX ID: report--84dbb6c0-b569-547e-9cfd-ccfbea91df2c

Feed Name: Darknet

Threat Score
75/100

Date Published: 2013-02-21

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a public post‑exploitation tool that harvests browser-stored credentials and session tokens from major Windows browsers (Chrome/Edge/Brave via an App‑Bound Encryption bypass, Opera/Vivaldi via DPAPI, and Firefox via NSS decryption). It uses headless Chromium + DLL injection and multiple operational evasion techniques to decrypt and export cookies, saved logins, OAuth refresh tokens, autofill data, credit cards, and history as JSON, enabling fast lateral movement or cloud account takeover from a compromised developer workstation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.