Abusing Chrome Remote Desktop on Red Team Operations: A…
ID: 654087f1-6f3c-587c-b1e9-ce17586a03da
STIX ID: report--654087f1-6f3c-587c-b1e9-ce17586a03da
Feed Name: TrustedSec blog
Threat Score
This post is a step-by-step walkthrough for deploying and abusing Chrome Remote Desktop on Windows during Red Team operations: download and install the Chrome Remote Desktop Host MSI, run the remoting_start_host.exe onboarding command, and use an undocumented --pin parameter to bypass interactive PIN setup; the guide notes the requirement for local administrator privileges and recommends defensive controls such as AppLocker/allowlisting to block unauthorized installation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
