Web Application Vulnerability Scanner v2.3.0
ID: af53e528-0ba0-57d7-a0c9-84438144f9ce
STIX ID: report--af53e528-0ba0-57d7-a0c9-84438144f9ce
Feed Name: Darknet
DumpBrowserSecrets is a Windows post‑exploitation tool that harvests browser-stored secrets across Chromium-based and Firefox browsers by decrypting App‑Bound Encryption or DPAPI/NSS keys (via DLL injection into a headless Chromium process for the IElevator COM bypass). The report details its architecture, supported browsers and data types (cookies, saved logins, OAuth tokens, credit cards, autofill, history), operational evasion techniques, use cases in assumed-breach/red-team scenarios, and detection/mitigation guidance.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
