FreeBSD Local Root Escalation Vulnerability
ID: b9269a77-7645-5eb8-a353-525164b4abee
STIX ID: report--b9269a77-7645-5eb8-a353-525164b4abee
Feed Name: Darknet
This report analyzes DumpBrowserSecrets, a publicly available post‑exploitation tool that harvests browser‑stored credentials and session tokens across Chromium‑based browsers (including App‑Bound Encryption bypass via IElevator COM and Early Bird APC DLL injection), DPAPI‑protected browsers, and Firefox (NSS). It details functionality, supported browsers and data types (cookies, saved logins, OAuth refresh tokens, credit cards, autofill, history), evasion techniques, usage examples for red‑team/assumed‑breach scenarios, detection opportunities, and mitigation recommendations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
