Hacking Tools, Hacker News & Cyber Security
ID: ef6e8c37-595a-5f4e-b72d-a7c88d6db795
STIX ID: report--ef6e8c37-595a-5f4e-b72d-a7c88d6db795
Feed Name: Darknet
DumpBrowserSecrets is a Windows post-exploitation tool that harvests browser-stored secrets (saved logins, cookies, OAuth tokens, credit cards, autofill and history) from Chrome, Edge, Brave (via an App-Bound Encryption bypass using a DLL injected into a headless Chromium process), Opera/Opera GX/Vivaldi (DPAPI), and Firefox (NSS). The report describes technical implementation (Early Bird APC injection, IElevator COM usage, custom SQLite parsing), operational evasion features, an example attack scenario demonstrating cloud account takeover risk, and detection and mitigation recommendations for enterprise defenders.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
