logo

Hacking Tools, Hacker News & Cyber Security

ID: 8e177241-e9d0-5985-a773-7817267c113b

STIX ID: report--8e177241-e9d0-5985-a773-7817267c113b

Feed Name: Darknet

Threat Score
75/100

Date Published: 2017-10-20

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a public post-exploitation tool that harvests browser-stored credentials and session data from major Windows browsers (Chrome, Edge, Brave, Opera family, Vivaldi, and Firefox). It implements an App-Bound Encryption bypass for Chromium-based browsers by injecting a DLL into a spawned headless Chromium process to use the IElevator COM interface to decrypt keys, and uses DPAPI/NSS handling for other browsers. The tool outputs structured JSON, includes multiple operational evasion techniques (string obfuscation, API hashing, PPID/argument spoofing, file-handle duplication, custom SQLite parser), and is intended for red-team assumed-breach use but presents a realistic threat for credential theft, cloud account takeover, and lateral movement.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.