TagNabIt – AWS Cloud Resource Enumeration via Metadata Tags
ID: aca6bcbc-992f-5170-b10e-c2c089201fb8
STIX ID: report--aca6bcbc-992f-5170-b10e-c2c089201fb8
Feed Name: Darknet
DumpBrowserSecrets is a public, precompiled Windows post‑exploitation tool (with source and releases linked) that harvests browser‑stored secrets across major Chromium‑based browsers and Firefox. It implements an App‑Bound Encryption bypass for Chrome 127+ by spawning a headless Chromium process and injecting a DLL via Early Bird APC to call the IElevator COM interface, retrieves DPAPI or NSS keys where applicable, and outputs structured JSON of extracted credentials and tokens; the report covers attack scenarios, evasion features, detection opportunities, and mitigation advice.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
