Hacking Tools, Hacker News & Cyber Security
ID: dedf27d2-6eda-5535-a3f5-cda436c57b33
STIX ID: report--dedf27d2-6eda-5535-a3f5-cda436c57b33
Feed Name: Darknet
DumpBrowserSecrets is a post‑exploitation credential‑harvesting utility for Windows that extracts saved passwords, cookies, OAuth tokens, credit card data, autofill entries and history from major browsers; it bypasses Chrome's App‑Bound Encryption by injecting a DLL into a headless Chromium process to call the IElevator COM interface and handles DPAPI and NSS models for other browsers. The report provides implementation details, usage examples, evasion techniques, detection indicators, and mitigation guidance, framing the tool as valuable for red‑team assumed‑breach testing but also a capability attractive to adversaries.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
