logo

Acunetix WVS (Web Vulnerability Scanner) 7 Review

ID: 08b696d3-8d0e-5167-9980-90dce173d36b

STIX ID: report--08b696d3-8d0e-5167-9980-90dce173d36b

Feed Name: Darknet

Threat Score
78/100

Date Published: 2011-02-23

Date Updated: 2026-05-12

...
...

DumpBrowserSecrets is a publicly released post-exploitation tool that harvests browser-stored credentials and session data from major Chromium- and Gecko-based browsers on Windows. It implements an App-Bound Encryption bypass for Chrome/Edge/Brave by spawning a headless Chromium process, injecting a DLL via Early Bird APC to call the IElevator COM interface and decrypt the app_bound_encrypted_key, and it handles DPAPI and NSS decryption for other browsers; the tool outputs structured JSON, includes evasion features (string obfuscation, API hashing, PPID/argument spoofing, handle duplication, custom SQLite parser), and is intended for red team/assumed-breach use but increases realistic risk of cloud/SaaS account takeover from compromised developer workstations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.