Hacking Tools, Hacker News & Cyber Security
ID: 929aa7f8-0b41-5cdd-bc31-ece04d493a83
STIX ID: report--929aa7f8-0b41-5cdd-bc31-ece04d493a83
Feed Name: Darknet
DumpBrowserSecrets is a Windows post‑exploitation tool that extracts credentials and session material from major browsers (Chrome, Edge, Brave, Opera, Vivaldi, Firefox) by bypassing App‑Bound Encryption and other browser protections. It uses a headless Chromium process with DLL injection (Early Bird APC) to access the IElevator COM interface, retrieves DPAPI/NSS keys as needed, parses browser SQLite/JSON stores, and outputs structured JSON; the tool includes evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication) and is intended for red‑team assumed‑breach testing while demonstrating a high‑impact credential theft vector.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
