Hacking Tools, Hacker News & Cyber Security
ID: faac9170-0c6c-5fe1-bd9e-95eb34cf6f77
STIX ID: report--faac9170-0c6c-5fe1-bd9e-95eb34cf6f77
Feed Name: Darknet
DumpBrowserSecrets is a Windows post‑exploitation tool that extracts saved credentials, session cookies, OAuth refresh tokens, credit card data, autofill entries, and browsing history from Chromium-based browsers (Chrome, Edge, Brave, Opera family, Vivaldi) and Firefox by bypassing App‑Bound Encryption (via headless Chromium, Early Bird APC DLL injection and the IElevator COM interface), DPAPI, and NSS protections; the report covers its architecture, extracted data types, evasion techniques, an attack scenario, detection opportunities, and mitigation recommendations, and positions the tool as a red‑team utility for testing credential exposure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
