logo

Abusing Chrome Remote Desktop on Red Team Operations: A…

ID: 654087f1-6f3c-587c-b1e9-ce17586a03da

STIX ID: report--654087f1-6f3c-587c-b1e9-ce17586a03da

Feed Name: TrustedSec blog

Threat Score
50/100

Date Published: 2025-07-01

Date Updated: 2026-05-01

...
...

This post is a step-by-step walkthrough for deploying and abusing Chrome Remote Desktop on Windows during Red Team operations: download and install the Chrome Remote Desktop Host MSI, run the remoting_start_host.exe onboarding command, and use an undocumented --pin parameter to bypass interactive PIN setup; the guide notes the requirement for local administrator privileges and recommends defensive controls such as AppLocker/allowlisting to block unauthorized installation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.