logo

Hacking Tools, Hacker News & Cyber Security

ID: d9772238-178c-5e9c-b479-03ec0810caa4

STIX ID: report--d9772238-178c-5e9c-b479-03ec0810caa4

Feed Name: Darknet

Threat Score
70/100

Date Published: 2016-08-22

Date Updated: 2026-05-11

...
...

DumpBrowserSecrets is a post‑exploitation tool that harvests credentials and session material from major Windows browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox) by bypassing App‑Bound Encryption (via spawning a headless Chromium and using an injected DLL with the IElevator COM interface), DPAPI, and NSS protections; it extracts cookies, saved logins, OAuth tokens, credit cards, autofill data and history into JSON, includes several evasion techniques (string obfuscation, API hashing, PPID/argument spoofing, file-handle duplication), and is presented as a red‑team utility with guidance on detection and mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.