California Passes Wi-Fi Security Guidance Law
ID: e6839f30-ce4f-5273-8cf1-ddf8a75ee187
STIX ID: report--e6839f30-ce4f-5273-8cf1-ddf8a75ee187
Feed Name: Darknet
DumpBrowserSecrets is a Windows post‑exploitation tool that harvests browser-stored credentials and tokens from Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox by bypassing App‑Bound Encryption (via a headless Chromium process and IElevator COM decryption) or using DPAPI/NSS decryption. The tool outputs structured JSON of extracted cookies, saved logins, OAuth refresh tokens, credit card details, autofill data, history and bookmarks, includes evasion techniques (string obfuscation, API hashing, PPID/argument spoofing, Early Bird APC injection), and is intended for red team assumed‑breach testing but presents a clear risk for account takeover and lateral movement if abused.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
