References https://cn-sec.com/archives/1098484.html https://embracethered.com/blog/posts/2020/chrome-spy-remote-control/ https://cloud.tencent.cn/developer/article/1620907 https://infosecwriteups.com/local-privilege-escalation-by-leveraging-remote-debugging-protocol-features-pt-1-0550c5941cbf https://developer.chrome.com/blog/remote-debugging-port https://issues.chromium.org/issues/40063053 https://www.canva.dev/blog/engineering/discovering-headroll-cve-2023-0704-in-chromium/ https://swisskyrepo.github.io/PayloadsAllTheThings/Headless%20Browser/
Related Vulnerabilities(CVE-2025-4664) Google Chrome Loader组件因策略执行不足导致跨源数据泄露漏洞(CVE-2025-3071) Google Chrome导航不当实现导致绕过同源策略漏洞Google Chrome 资源管理错误漏洞Google Chrome Dawn UAF漏洞Google Chrome 类型混淆漏洞Google Chrome UAF漏洞 可致远程代码执行Google Chrome CVE-2024-4947 类型混淆漏洞Google Chrome CVE-2021-21118 内存损坏漏洞Google Chrome CVE-2024-4761 越界内存写入漏洞Google Chrome CVE-2023-3420 类型混淆漏洞