Microsoft Windows NT Hash Cracker (MD4 -LM)
ID: 8fbc98f1-ae70-5cf7-84b5-a2624f945987
STIX ID: report--8fbc98f1-ae70-5cf7-84b5-a2624f945987
Feed Name: Darknet
DumpBrowserSecrets is a publicly available post‑exploitation tool that harvests credentials and session tokens from major browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox). It bypasses Chrome’s App‑Bound Encryption by injecting a DLL into a headless Chromium process to call the IElevator COM interface, extracts DPAPI/NSS secrets for other browsers, and outputs structured JSON; the tool includes multiple evasion techniques intended to reduce EDR detection and is useful for assessing the credential blast radius of compromised developer endpoints.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
