logo

Reverse Engineering & Malware Analysis For Android

ID: 9c5922b3-cc0a-5ee5-8746-21be31f6b0a9

STIX ID: report--9c5922b3-cc0a-5ee5-8746-21be31f6b0a9

Feed Name: Darknet

Threat Score
75/100

Date Published: 2016-11-19

Date Updated: 2026-05-11

...
...

DumpBrowserSecrets is a publicly released post-exploitation tool that harvests browser-stored credentials and session tokens from Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox by bypassing App-Bound Encryption (via spawning headless Chromium and using IElevator COM with Early Bird APC DLL injection) or extracting DPAPI/NSS keys; it outputs structured JSON, includes multiple evasion techniques, and is intended for red-team/assumed-breach testing but represents a significant risk to enterprise developer endpoints and SaaS accounts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.