what you don't know can hurt you
Showing 1 - 25 of 27 RSS Feed

Files

Chrome Web Browser Decoder
Posted Dec 29, 2012
Authored by Kevin Devine

Chrome web browser decoder tool that demonstrates recovering passwords.

tags | tool, web
MD5 | 8e7fdeca962f9e7b4bae9489770354f2

Related Files

Chrome 72.0.3626.119 FileReader Use-After-Free
Posted May 8, 2019
Authored by Clement LECIGNE, timwr, Istvan Kurucsai | Site metasploit.com

This exploit takes advantage of a use after free vulnerability in Google Chrome 72.0.3626.119 running on Windows 7 x86. The FileReader.readAsArrayBuffer function can return multiple references to the same ArrayBuffer object, which can be freed and overwritten with sprayed objects. The dangling ArrayBuffer reference can be used to access the sprayed objects, allowing arbitrary memory access from Javascript. This is used to write and execute shellcode in a WebAssembly object. The shellcode is executed within the Chrome sandbox, so you must explicitly disable the sandbox for the payload to be successful.

tags | exploit, arbitrary, x86, javascript, shellcode
systems | windows, 7
advisories | CVE-2019-5786
MD5 | 1845174659a656cb293c5dd2f17fe75c
Chrome HTTP 1xx Out Of Bounds Read
Posted Dec 19, 2016
Authored by SkyLined

Chrome suffers from an HTTP 1xx base::String-Tokenizer-T<...>::Quick-Get-Next out of bounds read vulnerability.

tags | exploit, web
advisories | CVE-2013-6627
MD5 | 4f0cd70ae3101d4d079c98a08f6fda12
Chrome Blink SpeechRecognitionController Use-After-Free
Posted Nov 23, 2016
Authored by SkyLined

A specially crafted web-page can cause the blink rendering engine used by Google Chrome and Chromium to continue to use a speech recognition API object after the memory block that contained the object has been freed. An attacker can force the code to read a pointer from the freed memory and use this to call a function, allowing arbitrary code execution. Google Chrome version 39.0 is affected.

tags | exploit, web, arbitrary, code execution
advisories | CVE-2015-1251
MD5 | 58cecd42033cec65bf344dd36af29db5
Google Chrome DLL Hijack
Posted Dec 11, 2015
Authored by Stefan Kanthak

Google Chrome's executable installers suffer from a DLL hijacking vulnerability.

tags | exploit
systems | windows
MD5 | 6360cddf7b0c73a04c2b6cdacbe42637
Chrome ui::AXTree::Unserialize Use-After-Free
Posted Jul 18, 2015
Authored by SkyLined

Chrome suffers from a ui::AXTree::Unserialize related use-after-free vulnerability.

tags | exploit
MD5 | bfb12ad04f4458264fb569bb2ab44c8f
Google Chrome 43.0.2357.124 XSS Filter Bypass
Posted Jun 24, 2015
Authored by Yosi Ovadia

Google Chrome version 43.0.2357.124 suffers from a cross site scripting filter bypass vulnerability.

tags | exploit, xss, bypass
MD5 | 3c4022da49d0faa3703ac6a509d908b7
Chrome EXIF Viewer 2.4.2 Cross Site Scripting
Posted Jul 31, 2014
Authored by Fady Mohamed Osman

Chrome EXIF Viewer plugin version 2.4.2 suffers from a cross site scripting vulnerability.

tags | exploit, xss
systems | linux
MD5 | b5545c3a3df8546a9015c23b8147a301
ChromeFreak Forensic Tool
Posted May 1, 2014
Authored by Osanda Malith

ChromeFreak is a python script that lets you look at history, downloads, bookmarks, and cookies for a given Chrome client.

tags | tool, python, forensics
MD5 | a160acf2a125b9982c38538a90269175
Google Chrome 31.0 Webkit Auditor Bypass
Posted Sep 24, 2013
Authored by Rafay Baloch, PEPE Vila

Google Chrome version 31.0 suffers from an auditor bypass that allows for cross site scripting attacks to successfully get through.

tags | exploit, xss, bypass
MD5 | 59b33ed589d9ea8d9e202dcd2431989
Google Chrome 25.0.1364.152 HTTP Referer Header Faking
Posted Jul 8, 2013
Authored by Liad Mizrachi

Google Chrome version 25.0.1364.152 suffers from an XMLHttpRequest HTTP Referer Header faking vulnerability.

tags | exploit, web
MD5 | 15f802508bdb3aa33531cdc6289be924
Google Chrome 21.0.1180.57 NULL Pointer
Posted Mar 14, 2013
Authored by Heyder Andrade

Google Chrome versions 21.0.1180.57 and below suffer from a NULL pointer vulnerability in InspectDataSource::StartDataRequest.

tags | exploit
MD5 | ea0dac24cc2d61b8a86a90428d48a752
Chrome 18 Anti-XSS Bypass
Posted Jun 2, 2012
Authored by Keith Makan

Chrome 18 suffers from an anti-cross site scripting filter bypass vulnerability.

tags | exploit, xss, bypass
MD5 | ceab9abe49a3b405a690a589b8be9717
Chome Web Solutions SQL Injection
Posted Jul 27, 2011
Authored by Ehsan_Hp200

Chrome Web Solutions suffers from multiple remote SQL injection vulnerabilities.

tags | exploit, remote, web, vulnerability, sql injection
MD5 | 3720dfce2f5880ea1011adc7e6cf13c3
ChromeMedia SQL Injection
Posted May 24, 2011
Authored by Kalashinkov3

ChromeMedia suffers from a remote SQL injection vulnerability.

tags | exploit, remote, sql injection
MD5 | 0f7c74520a6cf9544f0ecee6fcc06a91
Google Chrome 10.0.648.205 Stack Overflow
Posted Apr 18, 2011
Authored by C4SS!0 G0M3S

Google Chrome version 10.0.648.205 stack exhaustion exploit.

tags | exploit
MD5 | 9ef566cbf660702ad353c638b39b4eff
Google Chrome Arbitrary Extensions Detection
Posted Sep 8, 2010
Authored by Lostmon | Site lostmon.blogspot.com

Google Chrome suffers from an installed extensions arbitrary detection vulnerability.

tags | exploit, arbitrary
MD5 | a76ba5e7565d1c6c8e2e8342a19d93a1
Google Chrome Stack Exhaustion
Posted Apr 29, 2010
Authored by Jelmer de Hen | Site h.ackack.net

Chrome acronym tag denial of service exploit.

tags | exploit, denial of service
MD5 | 6de167c5bf61ea4af13702207468706a
Chrome Password Manager Cross Origin Weakness
Posted Feb 16, 2010
Authored by Timothy D. Morgan | Site vsecurity.com

Virtual Security Research, LLC. Security Advisory - In mid-January, VSR identified a vulnerability in Google Chrome which could be used in phishing attacks in specific types of web sites. This issue may make it much easier to convince a victim to submit web application credentials to the attacker's site.

tags | advisory, web
advisories | CVE-2010-0556
MD5 | cc80c14cdde56d4b987f9bd1d621ad47
Google Chrome 3.0195.38 Status Bar Obfuscation
Posted Jan 1, 2010
Authored by 599eme Man

Google Chrome version 3.0195.38 suffers from a simple status bar obfuscation vulnerability.

tags | exploit
MD5 | d6389e2d89bac2cede5f71b40f7f3215
Blended Browser File Theft
Posted Nov 6, 2009
Authored by Inferno from Secure Thoughts

Google Chrome versions prior to 3.0.195.32 suffer from a vulnerability that allows for file theft.

tags | advisory
MD5 | 682d190f74d542fd7066f92ede5f599c
Chrome/Opera ATOM/RSS Reader Script Execution
Posted Sep 16, 2009
Authored by Inferno from Secure Thoughts

Small write-up discussing how to exploit Chrome's and Opera's ATOM/RSS reader with script execution.

tags | exploit, xss
MD5 | 1943f2414a304182d13e522803fa5077
Chrome chromehtml: Code Execution
Posted Jan 30, 2009
Authored by Janek Vind aka waraxe | Site waraxe.us

Updated version of the Google Chrome chromehtml: code execution vulnerability that demonstrates disabling of the sandbox. Version 1.0.154.46 is affected.

tags | exploit, code execution
MD5 | 4770d42cc22cb22e1421be952380ac92
Google Chrome Click Jacking
Posted Jan 28, 2009
Authored by Aditya K Sood | Site secniche.org

The Google Chrome browser versions 1.0.154.43 and below suffer from a clickjacking vulnerability.

tags | exploit
MD5 | a9a882cf4eefe4cae82f829e96fa34ea
Google Chrome Parameter Injection
Posted Dec 30, 2008
Authored by Nine:Situations:Group | Site retrogod.altervista.org

The Google Chrome Browser suffers from a remote parameter injection vulnerability in relation to ChromeHTML://.

tags | exploit, remote
MD5 | 0be673fe20db3d4664ed1f183669423b
chromeboom.zip
Posted Mar 19, 2004
Authored by Luigi Auriemma | Site aluigi.altervista.org

Remote exploit that causes a server crash in Chrome versions 1.2.0.0 and below.

tags | exploit, remote
MD5 | e3db592b13f93de2362dcaac5b365292
Page 1 of 2
Back12Next

File Archive:

February 2020

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Feb 1st
    1 Files
  • 2
    Feb 2nd
    2 Files
  • 3
    Feb 3rd
    17 Files
  • 4
    Feb 4th
    15 Files
  • 5
    Feb 5th
    24 Files
  • 6
    Feb 6th
    16 Files
  • 7
    Feb 7th
    19 Files
  • 8
    Feb 8th
    1 Files
  • 9
    Feb 9th
    2 Files
  • 10
    Feb 10th
    15 Files
  • 11
    Feb 11th
    20 Files
  • 12
    Feb 12th
    12 Files
  • 13
    Feb 13th
    18 Files
  • 14
    Feb 14th
    17 Files
  • 15
    Feb 15th
    4 Files
  • 16
    Feb 16th
    4 Files
  • 17
    Feb 17th
    34 Files
  • 18
    Feb 18th
    15 Files
  • 19
    Feb 19th
    19 Files
  • 20
    Feb 20th
    20 Files
  • 21
    Feb 21st
    11 Files
  • 22
    Feb 22nd
    0 Files
  • 23
    Feb 23rd
    0 Files
  • 24
    Feb 24th
    0 Files
  • 25
    Feb 25th
    0 Files
  • 26
    Feb 26th
    0 Files
  • 27
    Feb 27th
    0 Files
  • 28
    Feb 28th
    0 Files
  • 29
    Feb 29th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2016 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close