MarketplacePayment ProcessingChrome-App-Bound-Encryption-Decryption
Chrome-App-Bound-Encryption-Decryption
Payment ProcessingOpen Source eCommerce

Chrome-App-Bound-Encryption-Decryption

Cybersecurity & AI Security Executive

Open Source

About

A post-exploitation tool demonstrating a complete, in-memory bypass of Chromium's App-Bound Encryption (ABE). This project utilizes Direct Syscall-based Reflective Process Hollowing to launch a legitimate browser process in a suspended state, stealthily injecting a payload to hijack its identity and security context. This Living-off-the-Land (LOTL) technique subverts the browser's own security model. The fileless approach allows the tool to operate entirely from memory, bypassing user-land API hooks to decrypt and exfiltrate sensitive user data (cookies, passwords, payments) from modern Chromium browsers.

Open Source Health

Not enough history
Stars
1,790
Forks
304
License
MIT
Last commit
8 months ago
C

Related Categories