Netskope Threat Labs

BROWSER-CHROME Google Chrome DevTools remote code execution via malicious extension attempted

IPS-CFWIPS-SWG

1 SID: 170089

Detects a DevTools extension that reloads the inspected window with injected code and bypasses the chrome:// URL check, the technique tied to CVE-2024-5836, an inappropriate implementation in DevTools that can allow remote code execution.