Using the capture command in a Cisco Systems PIX firewall.
ID: f862a6a2-3dd7-5cc0-a275-cb65d546777b
STIX ID: report--f862a6a2-3dd7-5cc0-a275-cb65d546777b
Feed Name: Darknet
**Executive summary:** DumpBrowserSecrets is a publicly available, precompiled Windows post-exploitation tool that harvests browser-stored credentials and session tokens from Chrome, Edge, Brave, Opera variants, Vivaldi, and Firefox; it implements an App-Bound Encryption bypass for Chromium browsers by injecting a DLL into a headless Chromium process to access the IElevator COM interface, and includes multiple operational evasion techniques, making it a high-risk capability for lateral movement and cloud account takeover in assumed-breach scenarios.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
