logo

Locate anyone in the UK via SMS

ID: d417f78f-71fc-5f59-8cde-6a6084ebeba2

STIX ID: report--d417f78f-71fc-5f59-8cde-6a6084ebeba2

Feed Name: Darknet

Threat Score
75/100

Date Published: 2006-02-17

Date Updated: 2026-05-13

...
...

DumpBrowserSecrets is a post-exploitation credential-harvesting tool that extracts saved passwords, cookies, OAuth tokens, credit card data, autofill entries, history, and bookmarks from major Windows browsers (Chromium-based and Firefox). It bypasses Chrome's App-Bound Encryption by injecting a DLL into a headless Chromium process to invoke the IElevator COM interface, handles DPAPI and NSS decryption for other browsers, includes multiple EDR-evasion features, and outputs structured JSON to facilitate rapid credential abuse (lateral movement, cloud account takeover, session replay) in assumed-breach or red-team engagements.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.