This repository contains proof of concept exploits for CVE-2024-5836 and CVE-2024-6778, which are vulnerabilities within the Chromium web browser which allowed for a sandbox escape from a browser extension.
To run these, you must be on a version of Chromium older than 126.0.6478.54
.
Write up
Bug report
Both the CVE-2024-5386
and CVE-2024-6778
directories contains a POC Chrome extension that is able to execute arbitrary JS on privileged WebUI pages. CVE-2024-5386
relies on a race condition and is fairly unreliable, while CVE-2024-6778
does not.
The sandbox-escape
directory contains the full exploit chain, using CVE-2024-6778
to gain code execution in chrome://policy
, which leads to a sandbox escape by setting the legacy browser support policies.
This repository is licensed under the MIT license.
Prompt injection is a type of security vulnerability that can be exploited to control the…
Firefly is an advanced black-box fuzzer and not just a standard asset discovery tool. Firefly…
Winit is a robust, cross-platform library designed for creating and managing windows in Rust applications.…
In today’s digital age, convenience often comes at the cost of security. One such overlooked…
Terminal GPT (tgpt) offers a seamless way to bring the power of ChatGPT 3.5 directly…
garak checks if an LLM can be made to fail in a way we don't…