logo

Hacking Tools, Hacker News & Cyber Security

ID: b78fc7f9-f2ac-59db-b99d-96040f70e295

STIX ID: report--b78fc7f9-f2ac-59db-b99d-96040f70e295

Feed Name: Darknet

Threat Score
75/100

Date Published: 2016-08-30

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a publicly documented post‑exploitation credential‑harvesting tool that extracts saved logins, session cookies, OAuth refresh tokens, credit card data and browsing history from major browsers (Chrome, Edge, Brave, Opera, Vivaldi, Firefox). It implements a Chromium App‑Bound Encryption bypass by spawning a headless Chromium process and injecting a DLL via Early Bird APC to use the IElevator COM interface, includes multiple operational evasion techniques (string obfuscation, API hashing, PPID/argument spoofing, handle duplication), outputs structured JSON, and is intended for red team assumed‑breach testing but poses a realistic threat if used by adversaries.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.