logo

Extremely Fast Multi-Threaded Login/Password Cracker

ID: 90468b97-fb05-5168-b905-3e6b64d6efbf

STIX ID: report--90468b97-fb05-5168-b905-3e6b64d6efbf

Feed Name: Darknet

Threat Score
72/100

Date Published: 2010-10-04

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a Windows post‑exploitation tool that harvests browser-stored secrets (saved credentials, session cookies, OAuth refresh tokens, credit cards, autofill and history) across Chromium-based browsers and Firefox. It bypasses Chrome's App-Bound Encryption by spawning a headless Chromium process and injecting a DLL (Early Bird APC + IElevator COM usage), includes operational evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication), outputs structured JSON, and is presented as a red-team utility but poses a high-risk credential-exfiltration capability for malicious actors; the report also outlines detection opportunities and mitigations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.