Heartbleed Implicated In US Hospital Leak
ID: a0b4e2ca-c7c5-5a04-b832-452ce0db7650
STIX ID: report--a0b4e2ca-c7c5-5a04-b832-452ce0db7650
Feed Name: Darknet
DumpBrowserSecrets is a post-exploitation Windows tool that harvests browser-stored credentials and session material (cookies, OAuth refresh tokens, saved logins, credit cards, autofill, history) across Chromium-based browsers (Chrome, Edge, Brave, Opera variants, Vivaldi) and Firefox. It implements an App-Bound Encryption bypass for Chrome 127+ by spawning a headless Chromium process and injecting a DLL to use the IElevator COM interface to decrypt keys, supports DPAPI and NSS decryption models for other browsers, and includes operational evasion features; outputs are written as structured JSON for red team/assumed-breach testing.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
