Netskope Threat Labs

BROWSER-CHROME Google Chrome use-after-free sandbox escape attempt

IPS-SWG

1 SID: 62482

First seen
July 2024
Last seen
July 2024

Detects web content that exploits CVE-2021-30633, a use-after-free in Chrome's IndexedDB implementation that can escape the renderer sandbox. The rule matches the heap spray with fake external objects that public exploits use, and Google confirmed exploitation in the wild before the September 2021 patch.