Hacking Tools, Hacker News & Cyber Security
ID: 8d41fb7c-2bbb-5506-b5d3-8415573abe65
STIX ID: report--8d41fb7c-2bbb-5506-b5d3-8415573abe65
Feed Name: Darknet
DumpBrowserSecrets is a publicly documented post‑exploitation tool that harvests browser‑stored credentials and session tokens from Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox on Windows. It bypasses Chrome’s App‑Bound Encryption by injecting a DLL into a headless Chromium process to call the IElevator COM interface, retrieves DPAPI/NSS keys where applicable, and outputs structured JSON; the tool includes evasion primitives (string obfuscation, API hashing, PPID/argument spoofing, file handle duplication, custom SQLite parsing) and is framed for red‑team/assumed‑breach testing but represents a capable threat for credential theft and cloud account takeover.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
