Netskope Threat Labs

BROWSER-CHROME Google Chrome extensions bypass attempted

IPS-CFWIPS-SWG

2 SIDs: 170162, 170163

First seen
July 2025
Last seen
September 2026

Detects web pages that attempt to disable or hang managed extensions on ChromeOS devices, the behavior tied to CVE-2025-6179. The rule matches the public ExtPrint3r and ExtHang3r techniques, which flood the page with iframes and printing operations to crash the extension service and strip enterprise policies.