Hacking Tools, Hacker News & Cyber Security
ID: e5fb0117-1e91-5807-b5b2-06e46c41745c
STIX ID: report--e5fb0117-1e91-5807-b5b2-06e46c41745c
Feed Name: Darknet
DumpBrowserSecrets is a public post-exploitation tool that harvests browser-stored credentials and session tokens from major Windows browsers (Chrome/Edge/Brave via App-Bound Encryption bypass, Opera/Vivaldi via DPAPI, Firefox via NSS). It uses DLL injection into a headless Chromium process to decrypt app-bound keys, parses on-disk SQLite/JSON stores, provides evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication), and outputs structured JSON suitable for red team or malicious use; the report includes attack scenarios, detection indicators, and mitigation recommendations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
