Hacking Tools, Hacker News & Cyber Security
ID: d9772238-178c-5e9c-b479-03ec0810caa4
STIX ID: report--d9772238-178c-5e9c-b479-03ec0810caa4
Feed Name: Darknet
DumpBrowserSecrets is a post‑exploitation tool that harvests credentials and session material from major Windows browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox) by bypassing App‑Bound Encryption (via spawning a headless Chromium and using an injected DLL with the IElevator COM interface), DPAPI, and NSS protections; it extracts cookies, saved logins, OAuth tokens, credit cards, autofill data and history into JSON, includes several evasion techniques (string obfuscation, API hashing, PPID/argument spoofing, file-handle duplication), and is presented as a red‑team utility with guidance on detection and mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
