Netskope Threat Labs

BROWSER-CHROME Google Chrome Web Audio SincResampler use after free attempt

IPS-CFWIPS-SWG

2 SIDs: 153001, 153002

Detects web content that exploits CVE-2024-0807, a use-after-free in Chrome's Web Audio resampling that can allow remote code execution. The rule matches the audio worklet registration at a high sample rate and rapid disconnects that public exploits use to free the resampler while it remains in use.