Parallel Windows Password Brute Forcing Tool
ID: ad3d0379-5130-56ac-b73b-9b41a2163918
STIX ID: report--ad3d0379-5130-56ac-b73b-9b41a2163918
Feed Name: Darknet
DumpBrowserSecrets is a publicly available post‑exploitation tool that extracts credentials, session cookies, OAuth refresh tokens, credit card data and browsing artifacts from major browsers on Windows by combining a compiled executable with a DLL that can bypass Chrome's App‑Bound Encryption via in-process IElevator COM decryption (using Early Bird APC injection). The report describes supported browsers (Chrome, Edge, Brave, Opera, Opera GX, Vivaldi, Firefox), extraction outputs (JSON), evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication), attack scenarios, detection opportunities, and mitigation recommendations for enterprise environments.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
