Hacking Tools, Hacker News & Cyber Security
ID: b2eac97c-97ee-5dff-8d93-bc350fd0e50f
STIX ID: report--b2eac97c-97ee-5dff-8d93-bc350fd0e50f
Feed Name: Darknet
DumpBrowserSecrets is a post‑exploitation credential‑harvesting tool that extracts saved credentials, session cookies, OAuth tokens, credit card data, autofill entries, and browsing history from major browsers (Chrome/Edge/Brave via App‑Bound Encryption bypass, Opera/Vivaldi via DPAPI, and Firefox via NSS). It uses a compiled executable and an injected DLL (Early Bird APC + IElevator COM interface) to decrypt protected keys, outputs structured JSON, and includes multiple evasion features—making it a high‑value tool for red teams and a realistic threat for credential theft and cloud account takeover on compromised developer endpoints.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
