Google Chrome Window Object Suppressing Remote Denial of Service..

Proof of Concept

Note: Design Flaw.Zero Security Check. Script Can Be Used to Kill Parent Window Directly Leading to Denial of Service.


This POC has been designed with minimum object usage. This can be made more critical dependent on the object usage.


Google Chrome Window Suppressed DoS Test POC. Open it with New Window to see How Parent is Killed.

Version Tested:

Official Build 1798
Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US)
AppleWebKit/525.13 (KHTML, like Gecko)
Chrome/0.2.149.29 Safari/525.13

Official Build 2200
Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US)
AppleWebKit/525.13 (KHTML, like Gecko)
Chrome/0.2.149.30 Safari/525.13