defaultnamehere / cookie_crimes Goto Github PK
View Code? Open in Web Editor NEWRead local Chrome cookies without root or decrypting
Home Page: https://mango.pdf.zone/stealing-chrome-cookies-without-a-password
License: MIT License
Read local Chrome cookies without root or decrypting
Home Page: https://mango.pdf.zone/stealing-chrome-cookies-without-a-password
License: MIT License
^^
I just changed the path for it to work on windows, but it's not printing out values, getting everything else... ?
Tried it out at work but as said it's windows* supported
Error:
File "cookie_crimes.py", line 34, in
raise RuntimeError("what the heck kind of OS is this? seriously what is '%s'? y'know what i don't hav to deal with this i'm outta here car ignition noises driving noises driving noises fade away" % sys.platform)
RuntimeError: what the heck kind of OS is this? seriously what is 'win32'? y'know what i don't hav to deal with this i'm outta here car ignition noises driving noises driving noises fade away
Any plans to make that work in the future? would appreciate just the stepping stones tho
Thanks,
$ python cookie_crimes.py
Traceback (most recent call last):
File "cookie_crimes.py", line 139, in
forbidden_process = summon_forbidden_protocol()
File "cookie_crimes.py", line 100, in summon_forbidden_protocol
stdout=subprocess.DEVNULL,
AttributeError: 'module' object has no attribute 'DEVNULL'
please talk about this in a conference, do it do it do it do it do it do it do it do it do it do it do it do it do it do it do it do it do it do it do it do it do it
While the tool does outputs some cookies, this aren't really the cookies of the user.
Chrome dev tools opens the page in some kind of container, without the user's cookies.
The cookies it outputs are just the cookies that google sets automatically, without the user being logged in.
If you delete de --headeless parameter in the source code, run the tool and when chrome opens you go to http://localhsot:9222/json/new?https://some_page_you_are_logged_in.com
you will see you are not going to be logged in this URL, that's why the tool can't retrieve the real cookies.
At least that is what I understood. Only tested in Windows 10, on the latest Chrome.
I tried running this project after fulfilling the requirements and doing "make"
running "python3 cookie_crimes.py" doesn't work.
Also running "python cookie_crimes.py " produces error at line 100
AttributeError: 'module' object has no attribute 'DEVNULL'
Restarting chrome can not load cookies . It would not work on it at Mac 77.0.3865.90
Hello,
Thank you for this research and tool. However, I failed to test the tool for myself. Got following error messages (OS is macOS)
Traceback (most recent call last):
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/urllib3/connection.py", line 171, in _new_conn
(self._dns_host, self.port), self.timeout, **extra_kw)
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/urllib3/util/connection.py", line 79, in create_connection
raise err
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/urllib3/util/connection.py", line 69, in create_connection
sock.connect(sa)
ConnectionRefusedError: [Errno 61] Connection refused
During handling of the above exception, another exception occurred:
Traceback (most recent call last):
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/urllib3/connectionpool.py", line 600, in urlopen
chunked=chunked)
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/urllib3/connectionpool.py", line 354, in _make_request
conn.request(method, url, **httplib_request_kw)
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/http/client.py", line 1239, in request
self._send_request(method, url, body, headers, encode_chunked)
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/http/client.py", line 1285, in _send_request
self.endheaders(body, encode_chunked=encode_chunked)
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/http/client.py", line 1234, in endheaders
self._send_output(message_body, encode_chunked=encode_chunked)
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/http/client.py", line 1026, in _send_output
self.send(msg)
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/http/client.py", line 964, in send
self.connect()
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/urllib3/connection.py", line 196, in connect
conn = self._new_conn()
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/urllib3/connection.py", line 180, in _new_conn
self, "Failed to establish a new connection: %s" % e)
urllib3.exceptions.NewConnectionError: <urllib3.connection.HTTPConnection object at 0x1093c3dd8>: Failed to establish a new connection: [Errno 61] Connection refused
During handling of the above exception, another exception occurred:
Traceback (most recent call last):
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/requests/adapters.py", line 445, in send
timeout=timeout
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/urllib3/connectionpool.py", line 638, in urlopen
_stacktrace=sys.exc_info()[2])
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/urllib3/util/retry.py", line 398, in increment
raise MaxRetryError(_pool, url, error or ResponseError(cause))
urllib3.exceptions.MaxRetryError: HTTPConnectionPool(host='localhost', port=9222): Max retries exceeded with url: /json (Caused by NewConnectionError('<urllib3.connection.HTTPConnection object at 0x1093c3dd8>: Failed to establish a new connection: [Errno 61] Connection refused',))
During handling of the above exception, another exception occurred:
Traceback (most recent call last):
File "cookie_crimes.py", line 140, in <module>
secret_websocket_debugging_url = hit_that_secret_json_path_like_its_1997()
File "cookie_crimes.py", line 109, in hit_that_secret_json_path_like_its_1997
response = requests.get("http://localhost:{port}/json".format(port=REMOTE_DEBUGGING_PORT))
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/requests/api.py", line 72, in get
return request('get', url, params=params, **kwargs)
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/requests/api.py", line 58, in request
return session.request(method=method, url=url, **kwargs)
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/requests/sessions.py", line 512, in request
resp = self.send(prep, **send_kwargs)
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/requests/sessions.py", line 622, in send
r = adapter.send(request, **kwargs)
File "/Library/Frameworks/Python.framework/Versions/3.6/lib/python3.6/site-packages/requests/adapters.py", line 513, in send
raise ConnectionError(e, request=request)
requests.exceptions.ConnectionError: HTTPConnectionPool(host='localhost', port=9222): Max retries exceeded with url: /json (Caused by NewConnectionError('<urllib3.connection.HTTPConnection object at 0x1093c3dd8>: Failed to establish a new connection: [Errno 61] Connection refused',))
Installed the requirements and tried running the app but got an error immediately.
python3 cookie_crimes.py
Traceback (most recent call last):
File "cookie_crimes.py", line 147, in <module>
cleanup(forbidden_process)
File "cookie_crimes.py", line 130, in cleanup
os.kill(chrome_process.pid + 1, signal.SIGKILL)
ProcessLookupError: [Errno 3] No such process
Why does http://localhost:9222/json work?
How fuck!!!!
A declarative, efficient, and flexible JavaScript library for building user interfaces.
๐ Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. ๐๐๐
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google โค๏ธ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.