logo

Hacking Tools, Hacker News & Cyber Security

ID: b2eac97c-97ee-5dff-8d93-bc350fd0e50f

STIX ID: report--b2eac97c-97ee-5dff-8d93-bc350fd0e50f

Feed Name: Darknet

Threat Score
75/100

Date Published: 2015-09-28

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a post‑exploitation credential‑harvesting tool that extracts saved credentials, session cookies, OAuth tokens, credit card data, autofill entries, and browsing history from major browsers (Chrome/Edge/Brave via App‑Bound Encryption bypass, Opera/Vivaldi via DPAPI, and Firefox via NSS). It uses a compiled executable and an injected DLL (Early Bird APC + IElevator COM interface) to decrypt protected keys, outputs structured JSON, and includes multiple evasion features—making it a high‑value tool for red teams and a realistic threat for credential theft and cloud account takeover on compromised developer endpoints.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.