LTBEEF
Bypassi#7037

Website Blog Source

Bookmarklets must not be blocked by policy to perform this exploit.

(Logo by LittleMissNyan)

LTBEEF (Literally The Best Exploit Ever Found) can disable extensions and spyware that are force-installed by your sysadmins. Using the Chrome Management API, it is run on chrome.google.com/webstorex to utilize the Chrome Web Store's privileges in Chrome to disable extensions.

CompactCow UI:

Ingot UI:

LTBEEF

(Drag to bookmarks bar)

(Hosted by TheGreatestGiant | Hosting has ended for this address)

Ingot

(Drag to bookmarks bar)

(Hosted by TheGreatestGiant | Hosting has ended for this address)

Bookmarklet Method

    Instructions

  1. Drag either of the above buttons to your bookmarks bar.
  2. Navigate to chrome.google.com/webstorex. (This is a 404 page not found error page, and this is completely normal).
  3. In the bookmarks bar, click the bookmarklet. (IMPORTANT NOTE: This only works on the Chrome Web Store).
  4. Click sliders to toggle their corresponding extensions.

DNS Method

    Instructions

    Connect to the DNS server
  1. Navigate to chrome://os-settings/internet.
  2. Navigate to the detail page for your network.
  3. Expand the Network dropdown.
  4. Select Custom name servers.
  5. Set the first input field value to the DNS address.
  6. Disconnect from your network.
  7. Connect to your network.
  8. Navigate to chrome.google.com.
  9. On the warning screen that appears, type thisisunsafe.
  10. Click sliders to toggle their corresponding extensions.

Video Tutorials

Credits

User Description
Bypassi#7037 Exploit
CompactCow#4717 New UI
Nebelung#1335 Ingot
Piplup7575#6726 Website
LittleMissNyan Logo