Hacking Tools, Hacker News & Cyber Security
ID: cba5208b-3a6d-53da-afb9-60fbdbff46d5
STIX ID: report--cba5208b-3a6d-53da-afb9-60fbdbff46d5
Feed Name: Darknet
DumpBrowserSecrets is a post‑exploitation credential‑harvesting tool (Windows executable + DLL) that extracts saved passwords, session cookies, OAuth refresh tokens, credit card data, autofill entries, and history from Chromium‑based and Firefox browsers; it bypasses Chrome’s App‑Bound Encryption by injecting a DLL into a headless Chromium process to call the IElevator COM interface, includes DPAPI and NSS handling for other browsers, and implements multiple evasion techniques. The tool outputs structured JSON for red‑team use and is positioned as useful for testing endpoint controls and the credential blast radius of compromised developer workstations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
