Hacking Tools, Hacker News & Cyber Security
ID: d5c07a8b-3eb8-5e11-9fd9-06185b688bdf
STIX ID: report--d5c07a8b-3eb8-5e11-9fd9-06185b688bdf
Feed Name: Darknet
DumpBrowserSecrets is a publicly available post‑exploitation tool for Windows that harvests browser‑stored credentials and tokens from major Chromium‑based and Firefox browsers by bypassing App‑Bound Encryption (Chrome 127+), DPAPI, and NSS. It uses a two‑component model (an executable and an injected DLL), spawns a headless Chromium process and injects via Early Bird APC to call the IElevator COM interface for key decryption, includes multiple operational evasion features, outputs structured JSON of recovered secrets, and is intended for red‑team/assumed‑breach testing but presents a significant real‑world risk to developer and enterprise SaaS credentials.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
