Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. back in 2022 i found a bug that would let me, with no user interaction, turn any chromium-based browser into a permanent js botnet member

back in 2022 i found a bug that would let me, with no user interaction, turn any chromium-based browser into a permanent js botnet member

Scheduled Pinned Locked Moved Uncategorized
47 Posts 30 Posters 210 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • rebane2001@infosec.exchangeR rebane2001@infosec.exchange

    issue set to private again, hopefully it'll get fixed properly this time πŸ˜›

    ratsnakegames@mastodon.socialR This user is from outside of this forum
    ratsnakegames@mastodon.socialR This user is from outside of this forum
    ratsnakegames@mastodon.social
    wrote last edited by
    #41

    @rebane2001 fucking embarrassing

    1 Reply Last reply
    0
    • rebane2001@infosec.exchangeR rebane2001@infosec.exchange

      issue set to private again, hopefully it'll get fixed properly this time πŸ˜›

      samantazfox@infosec.exchangeS This user is from outside of this forum
      samantazfox@infosec.exchangeS This user is from outside of this forum
      samantazfox@infosec.exchange
      wrote last edited by
      #42

      @rebane2001 Well, too late, it has already been archived :x

      rebane2001@infosec.exchangeR 1 Reply Last reply
      0
      • samantazfox@infosec.exchangeS samantazfox@infosec.exchange

        @rebane2001 Well, too late, it has already been archived :x

        rebane2001@infosec.exchangeR This user is from outside of this forum
        rebane2001@infosec.exchangeR This user is from outside of this forum
        rebane2001@infosec.exchange
        wrote last edited by
        #43

        @SamantazFox out of curiosity, where? the archive.org captures don't load for me

        edit: ty πŸ™‚

        lenni@fosstodon.orgL 1 Reply Last reply
        0
        • rebane2001@infosec.exchangeR rebane2001@infosec.exchange

          @SamantazFox out of curiosity, where? the archive.org captures don't load for me

          edit: ty πŸ™‚

          lenni@fosstodon.orgL This user is from outside of this forum
          lenni@fosstodon.orgL This user is from outside of this forum
          lenni@fosstodon.org
          wrote last edited by
          #44

          @rebane2001 @SamantazFox It's on archive.today/.is/.ph. Only go there with a content blocker, you're DDoSing a small blog otherwise: https://gyrovague.com/2026/02/01/archive-today-is-directing-a-ddos-attack-against-my-blog/

          1 Reply Last reply
          0
          • rebane2001@infosec.exchangeR rebane2001@infosec.exchange

            back in 2022 i found a bug that would let me, with no user interaction, turn any chromium-based browser into a permanent js botnet member

            in edge, you wouldn't even notice anything out-of-place, and would stay connected to the c2 even after closing the browser

            today, almost 4 years later, the bug is finally public:
            https://issues.chromium.org/issues/40062121

            fuzzyfuzzyfungus@cyberplace.socialF This user is from outside of this forum
            fuzzyfuzzyfungus@cyberplace.socialF This user is from outside of this forum
            fuzzyfuzzyfungus@cyberplace.social
            wrote last edited by
            #45

            @rebane2001 I hate it; but damn that's clever.

            1 Reply Last reply
            0
            • rebane2001@infosec.exchangeR rebane2001@infosec.exchange

              issue set to private again, hopefully it'll get fixed properly this time πŸ˜›

              shravanrn@infosec.exchangeS This user is from outside of this forum
              shravanrn@infosec.exchangeS This user is from outside of this forum
              shravanrn@infosec.exchange
              wrote last edited by
              #46

              @rebane2001 really cool work. Didn't realize this sort of bug class even existed. Hope they up the bounty; this seems worth more than $1000

              1 Reply Last reply
              0
              • rebane2001@infosec.exchangeR This user is from outside of this forum
                rebane2001@infosec.exchangeR This user is from outside of this forum
                rebane2001@infosec.exchange
                wrote last edited by
                #47

                @Strabisme @cR0w yes, provided you disable js or service workers on the page

                1 Reply Last reply
                1
                0
                • R relay@relay.infosec.exchange shared this topic
                Reply
                • Reply as topic
                Log in to reply
                • Oldest to Newest
                • Newest to Oldest
                • Most Votes


                • Login

                • Login or register to search.
                • First post
                  Last post
                0
                • Categories
                • Recent
                • Tags
                • Popular
                • World
                • Users
                • Groups