TGViewer
Fsecurity | HH Fsecurity | HH @hellohackingteam · 2.06K subscribers
Post #7616 149

Forwarded from 1N73LL1G3NC3

EdgeSavedPasswordsDumper

This tool was created to show that whenever a user stores credentials in Edge (using the Microsoft Password Manager feature, e.g. Autofill), ALL credentials are stored in plaintext in the parent Edge process memory. This is obviously problematic in a shared environment (e.g. on a terminal servers) as an attacker can access all Edge processes for all logged on and disconnected users, and dump their saved credentials. Microsoft has said that this is "by design" and thus won't fix this.

Powershell version: https://gist.github.com/gitgotgitgotit/e28e02a02a358aef189c9c1ee426adf8
Rust version: https://github.com/Whitecat18/Rust-for-Malware-Development/tree/main/Browser%20Creds%20Dumper/EdgeSavedPasswordsDumper
More from @hellohackingteam
  1. Oct 10, 2026Я написал сканер уязвимостей для вайбкода и проверил им 3 800 чужих репозиториев Сегодня T…
  2. Oct 10, 2026Извлечение секретов LSA, повторное использование существующей теневой копии VSS + встроенн…
  3. Oct 10, 2026🔗 Ссылка: https://opennet.me/66431/
  4. Oct 10, 2026🔗 Ссылка: https://opennet.me/66424/
  5. Oct 9, 2026🔑 SrHollow - дамп LSA secrets без касания к LSASS Очередной дампер секретов Windows, но с…
  6. Oct 9, 2026Глобальная панель разведки в реальном времени, которая агрегирует отслеживание полетов в р…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →