Homeland Security Uncovers Critical Flaw in X11
ID: a134da7d-faa1-545f-9680-755f120b61c7
STIX ID: report--a134da7d-faa1-545f-9680-755f120b61c7
Feed Name: Darknet
DumpBrowserSecrets is a post-exploitation browser credential harvesting tool that targets Chrome, Edge, Brave (App‑Bound Encryption bypass via IElevator and DLL injection), Opera/Opera GX/Vivaldi (DPAPI), and Firefox (NSS). It extracts cookies, saved logins, OAuth refresh tokens, credit cards, autofill data and history, outputs structured JSON, includes operational evasion techniques (string obfuscation, API hashing, PPID/argument spoofing, handle duplication), and is presented as a red-team tool useful for demonstrating cloud account takeover and lateral movement risks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
