Billy Rios developed an attack to exploit bugs in browser plug-ins. By chaining the vulnerabilities together, Rios is able to steal content from a victim’s machine. The slides containing the code for the attack are available on Rios s blog. The attack is a short demo of an attack that Rios has developed to exploit a series of bugs in the plug-in software in the browser. Watch the video below to see the full video of the attack from Rios’ blog.
Source: https://threatpost.com/chaining-bugs-exploit-browser-plug-ins-121710/74787/