logo

UK to Become Even More Draconian with Privacy Laws

ID: 9994cfb3-0dde-50d9-bec3-ddd62a8c4b6a

STIX ID: report--9994cfb3-0dde-50d9-bec3-ddd62a8c4b6a

Feed Name: Darknet

Threat Score
78/100

Date Published: 2008-05-26

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a publicly available post-exploitation tool that extracts saved credentials, session cookies, OAuth refresh tokens, credit card data, autofill entries, and browsing history from major Windows browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox). It implements an App-Bound Encryption bypass for Chromium (injecting a DLL into a headless Chromium process to use the IElevator COM interface), handles DPAPI and NSS decryption for other browsers, and includes operational evasion features (string obfuscation, API hashing, PPID/argument spoofing, file-handle duplication, and a custom SQLite parser). The tool is presented as a red-team utility but represents a significant credential-exfiltration capability that can enable lateral movement, SaaS account takeover, and persistent access if used by attackers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.