logo

Hacking Tools, Hacker News & Cyber Security

ID: 94a7c580-dbc0-535b-95f5-50df483ed60b

STIX ID: report--94a7c580-dbc0-535b-95f5-50df483ed60b

Feed Name: Darknet

Threat Score
75/100

Date Published: 2007-06-21

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a Windows post‑exploitation credential-harvesting tool (with an executable and DLL) that targets Chromium- and Gecko-based browsers to extract saved passwords, session cookies, OAuth refresh tokens, credit card data, autofill entries, and history. It bypasses Chrome's App-Bound Encryption by spawning a headless Chromium process and injecting a DLL to call the IElevator COM interface, uses DPAPI/NSS methods for other browsers, and includes operational evasion features; output is structured JSON for red-team or offensive use, and the report covers usage, detection opportunities, and mitigations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.