{"repo":"praetorian-inc/ChromeAlone","free":true,"listed":false,"github":"https://github.com/praetorian-inc/ChromeAlone","clone":"git clone https://github.com/praetorian-inc/ChromeAlone.git","description":"A tool to transform Chromium browsers into a C2 Implant","language":"JavaScript","stars":597,"topics":["chrome-extension","isolated-web-apps","redteam","wasm"],"license":"Apache-2.0","category":"dev-tools","readme_excerpt":"ChromeAlone - A Browser C2 Framework What does this get me? ChromeAlone is a browser implant that can be used in place of conventional implants like Cobalt Strike or Meterpreter. This repo provides a simple build process that will generate a management console, deploy infrastructure, and create a powershell sideloader script to run on targets. After installation, each ChromeAlone implant will provide mechanisms for: Providing a SOCKS TCP Proxy on the host Browser session stealing and credential capture Launching executables on the host from Chrome Phishing for WebAuthn requests for physical security tokens like YubiKeys or Titan Security Keys. An EDR resistant form of persistence on host that is implemented entirely with Chromium's built-in features. Build Instructions First build the docker container: docker build -t chromealone . Deployment Instructions There are currently two supported deployment modes. Note that in either case, you should be running docker from the base directory of the ChromeAlone git repository. Deployment from scratch via AWS For this you'll need to have an AWS account configured with your credentials stored in /.aws/credentials . Make sure your account has full EC2 write permissions along with Route53 permissions. Additionally it's assumed that your Route53 has been configured with at least 1 hosting zone containing a registered domain. If these conditions are met, then you can run this command. The domain value should match a domain under the control","default_branch":null,"files":null,"tree":[],"storefront":"/r/praetorian-inc","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/praetorian-inc/ChromeAlone/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}