logo

Hacking Tools, Hacker News & Cyber Security

ID: b2224302-8a53-500e-be18-f434b27b0e59

STIX ID: report--b2224302-8a53-500e-be18-f434b27b0e59

Feed Name: Darknet

Threat Score
75/100

Date Published: 2007-05-16

Date Updated: 2026-05-14

...
...

DumpBrowserSecrets is a Windows post‑exploitation tool that harvests browser‑stored credentials and session tokens from Chrome, Edge, Brave, Opera (and variants), Vivaldi, and Firefox by bypassing App‑Bound Encryption (via IElevator COM inside a headless Chromium process), DPAPI, and NSS; it uses DLL injection (Early Bird APC), handle duplication, API hashing and other evasion techniques, outputs structured JSON, and is intended for red‑team assumed‑breach testing but can be abused for rapid cloud account takeover and lateral movement.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.