logo

Find Interesting Anonymous Edits on Wikipedia

ID: d989b449-3def-54e6-b426-531e8f18707d

STIX ID: report--d989b449-3def-54e6-b426-531e8f18707d

Feed Name: Darknet

Threat Score
75/100

Date Published: 2008-06-17

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a publicly available post-exploitation tool that harvests credentials and session material from major Windows browsers (Chrome, Edge, Brave, Opera variants, Vivaldi, Firefox). It bypasses App-Bound Encryption in Chromium-based browsers by injecting a DLL into a headless browser process and using the IElevator COM interface to decrypt keys, and uses DPAPI/NSS techniques for other browsers. The tool outputs structured JSON of recovered cookies, saved logins, OAuth tokens, credit cards, autofill data, and history, and includes evasion features aimed at reducing EDR/AV detection, making it a high-risk capability for lateral movement and cloud account takeover in breached environments.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.