← Back to context

Comment by lyu07282

7 months ago

Pretty much impossible, would need to defeat https/ct. You would have to spoof *.google.com within chrome.

So if you install your own certificate authority and then spoof the DNS it might be possible? Not so useful as an attack vector, but potentially useful for people who want to do fun things with the browsers they own.