Netskope Threat Labs

BROWSER-CHROME Google Chrome DevTools remote code execution attempt via crafted HTML page

IPS-CFWIPS-SWG

1 SID: 152022

Detects web pages that abuse the window opener relationship to load Chrome's DevTools interface (devtools://) from malicious content, the technique tied to CVE-2024-3172, an inappropriate implementation in DevTools that can allow remote code execution.