logo

Hacker Group L0pht Making A Comeback

ID: b35e91f0-2fdd-515c-b5c4-587316bea76b

STIX ID: report--b35e91f0-2fdd-515c-b5c4-587316bea76b

Feed Name: Darknet

Threat Score
75/100

Date Published: 2009-07-28

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a public post-exploitation tool that harvests browser-stored credentials (passwords, session cookies, OAuth refresh tokens, credit cards, autofill data, history, and bookmarks) from major Chromium- and Gecko-based browsers on Windows; it implements an App-Bound Encryption bypass for Chrome/Edge/Brave via headless process DLL injection and the IElevator COM interface, handles DPAPI for Opera-family browsers, and NSS for Firefox, includes multiple evasion features, and is intended for red-team/assumed-breach testing but poses a high-risk capability if abused by attackers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.