Chrome Exfil

Chrome Exfil
Download Copy
Title: Chrome Exfil
Author: thisismyrobot

A script to exfiltrate Chrome browser credentials from a target. Entered interactively to bypass a lot of PowerShell-related AV triggers. The Chrome GET request exfil is low bandwidth, but shouldn't raise the same level of AV-detection alarm as Invoke-WebRequest.

🏆   Recognized with a Payload Award in September 2023

 

Exfiltration is an involuntary backup. It's a technique for obtaining data from a network. Once obtained, the data may be removed using a number of methods. These may include traversing the network to a command and control server, such as Cloud C². The content is typically encrypted or obfuscated. In the case of physical access, a bring-your-own-network element may be included to evade detection. See all exfiltration payloads.

This payload is for the USB Rubber Ducky — a "flash drive" that types keystroke injection payloads into unsuspecting computers at incredible speeds. It's no wonder this little quacker has made appearances on Mr. Robot, FBI, Blacklist, National Geography and more!

Submit your own payload, or browse more featured USB Rubber Ducky Payloads.

 

 

Related Payloads

Bouncy Coil
Bouncy Coil
This payload uses Powershell to create a O.MG Coil that bounces around the screen.
Read More
A.S.E - Advanced System Exfiltration
A.S.E - Advanced System Exfiltration
This slow, and steady staged payload takes it's time and gleans detailed system information using Powershell, Ducky scri
Read More
run command as root without sudo password
run command as root without sudo password
A payload that allows for executing any bash command on the targets computer as root, without knowing their sudo passwor
Read More