logo

Mac Malware Becoming a Serious Threat

ID: ef006bf2-32c5-5fdb-967a-883e90d4b855

STIX ID: report--ef006bf2-32c5-5fdb-967a-883e90d4b855

Feed Name: Darknet

Threat Score
80/100

Date Published: 2011-05-13

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a Windows post-exploitation credential-harvesting tool (publicly released) that extracts saved credentials, session cookies, OAuth tokens, credit card data, autofill entries, and browsing history from major Chromium-based and Firefox browsers. It implements an App-Bound Encryption bypass for Chrome/Edge/Brave by injecting a DLL into a headless Chromium process to call the IElevator COM interface, handles DPAPI and NSS-encrypted stores for other browsers, includes multiple evasion techniques, outputs structured JSON, and provides detection and mitigation guidance for defenders.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.