Remote Network Penetration via NetBios Hack/Hacking
ID: ad7c51dd-91c5-5683-8de8-567ac34a394c
STIX ID: report--ad7c51dd-91c5-5683-8de8-567ac34a394c
Feed Name: Darknet
DumpBrowserSecrets is a Windows post‑exploitation credential‑harvesting tool that targets major browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox), combining a compiled executable and an injected DLL to bypass App‑Bound Encryption and extract cookies, saved logins, OAuth tokens, credit cards and autofill data into JSON output; the report documents implementation details, evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication), attack scenarios, and detection/mitigation recommendations for defenders.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
