Man-in-the-Browser via Chrome Extension
Overview

Environment
Setup
CursedChrome C2 Server

Compromised Computer with CursedChrome Implant

Attacker
SSH Tunnel for CursedChrome Web Console
SSH Tunnel for CursedChrome HTTP Proxy


Installing CursedChrome CA Certificate to FireFox

Configuring FireFox Extension FoxyProxy

Moment of Truth

References
PreviousLateral Movement over headless RDP with SharpRDPNextShadowMove: Lateral Movement by Duplicating Existing Sockets
Last updated