logo

Writing a Fuzzer with the Fuzzled Framework

ID: fa8a5ba3-aa3c-5e79-95a4-de9bbfec7387

STIX ID: report--fa8a5ba3-aa3c-5e79-95a4-de9bbfec7387

Feed Name: Darknet

Threat Score
75/100

Date Published: 2007-11-01

Date Updated: 2026-05-08

...
...

DumpBrowserSecrets is a publicly available post‑exploitation tool that harvests browser-stored credentials and session tokens from Chrome, Edge, Brave, Opera (and variants), Vivaldi, and Firefox. It bypasses Chrome’s App‑Bound Encryption by injecting a DLL into a headless Chromium process to use the IElevator COM interface, retrieves DPAPI or NSS‑protected secrets where applicable, and includes operational evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication, custom SQLite parser). The tool outputs structured JSON, enabling rapid credential and token theft that can lead to lateral movement and cloud account takeover, and is presented as useful for red teams and for testing EDR controls.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.