logo

Twitter Patents Technique To Detect Mobile Malware

ID: b048273d-cfce-5acf-89ae-608e5748bc6e

STIX ID: report--b048273d-cfce-5acf-89ae-608e5748bc6e

Feed Name: Darknet

Threat Score
75/100

Date Published: 2014-08-27

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a publicly available post-exploitation tool that harvests browser-stored credentials and session tokens from major browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox). It implements an App-Bound Encryption bypass for Chromium-based browsers by spawning a headless Chromium process and injecting a DLL to call the IElevator COM interface, enabling decryption of browser vaults; it also includes DPAPI and NSS handling for other browsers and operational evasion features, outputs structured JSON, and is intended for red-team/assumed-breach use but poses a clear attacker capability for cloud and SaaS account takeover.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.