Hacking Tools, Hacker News & Cyber Security
ID: a0987608-17dc-56c7-8f12-c8605f779776
STIX ID: report--a0987608-17dc-56c7-8f12-c8605f779776
Feed Name: Darknet
**DumpBrowserSecrets — executive summary:** DumpBrowserSecrets is a precompiled Windows post-exploitation tool that harvests browser-stored secrets (saved logins, session cookies, OAuth refresh tokens, credit cards, autofill, history, and bookmarks) from Chromium-based browsers and Firefox by bypassing App-Bound Encryption (via DLL injection into a headless Chromium process and the IElevator COM interface), DPAPI, or NSS; it includes operational evasion features (string obfuscation, API hashing, PPID/argument spoofing, Early Bird APC injection, custom SQLite parsing) and is marketed for red-team assumed-breach testing but presents a significant credential-theft risk if used by adversaries.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
