Hacking Tools, Hacker News & Cyber Security
ID: e57ebc29-aee9-5689-a230-d042574e8b1c
STIX ID: report--e57ebc29-aee9-5689-a230-d042574e8b1c
Feed Name: Darknet
DumpBrowserSecrets is a precompiled Windows post‑exploitation tool that harvests browser-stored credentials and tokens from Chrome, Edge, Brave (App‑Bound Encryption bypass via headless Chromium + DLL injection/IElevator), Opera/Vivaldi (DPAPI), and Firefox (NSS). The README documents its extraction capabilities (passwords, cookies, OAuth refresh tokens, credit cards, autofill, history), evasion techniques (string obfuscation, API hashing, Early Bird APC injection, PPID/argument spoofing, handle duplication, custom SQLite parser), usage examples, detection opportunities, and mitigation recommendations; it is presented as a red-team utility but has clear operational misuse potential.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
