logo

China Home to at Least HALF of Malicious Web Sites

ID: c7740ebf-aba1-5075-b4e4-8afffac5e9b7

STIX ID: report--c7740ebf-aba1-5075-b4e4-8afffac5e9b7

Feed Name: Darknet

Threat Score
78/100

Date Published: 2008-06-29

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a publicly distributed post‑exploitation tool that extracts credentials and session material from major Windows browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox). It implements an App‑Bound Encryption bypass for Chromium (using a headless Chromium process, Early Bird APC DLL injection, and the IElevator COM interface) and DPAPI/NSS handling for other browsers, outputs structured JSON of recovered secrets, and includes operational evasion features; the report covers technical details, attack scenarios, detection opportunities, and mitigation advice.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.