logo

Hacking Tools, Hacker News & Cyber Security

ID: 867a7408-1aaf-52e4-85e2-62a39a77f31c

STIX ID: report--867a7408-1aaf-52e4-85e2-62a39a77f31c

Feed Name: Darknet

Threat Score
75/100

Date Published: 2017-11-04

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a post-exploitation credential-harvesting tool that extracts saved passwords, session cookies, OAuth refresh tokens, credit card data, autofill entries and browsing history from major browsers (Chrome, Edge, Brave, Opera, Opera GX, Vivaldi, and Firefox) by bypassing App-Bound Encryption and DPAPI; it uses Early Bird APC DLL injection into a headless Chromium process and the IElevator COM interface to decrypt keys. The README documents usage, supported browsers, extracted data types, evasion features, an attack scenario and detection/mitigation advice, noting the tool is aimed at red-team assumed-breach exercises but can be abused by adversaries.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.