tdr130 / CVE-2022-3656

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Imperva Red Team recently revealed a vulnerability called CVE-2022-3656 that affects more than 2.5 billion users of Google Chrome and Chromium-based browsers.

This vulnerability allows the theft of sensitive files, such as encrypted wallets and cloud provider credentials.

Vulnerability specification:

1.https://bugs.chromium.org/p/chromium/issues/detail?id=1345275#c34

2.https://www.imperva.com/blog/google-chrome-symstealer-vulnerability/

Instructions for use:

  1. Download the poc.zip file and decompress it

  2. Navigate to "fancy-poc" and provide the file (python3 -m http.server)

  3. Open http://localhost:8000 and follow the PoC instructions

About


Languages

Language:HTML 100.0%