Securly bypass - new or old?

kuhnd
New Contributor II

Not sure if this is a new Securly bypass or an old one I missed.

So I noticed a few kids visiting this site: securlypass.com and other variations.

Once on the site, they drag the button to a new tab, and then they have a switch to turn on & off the Securly extension.

During my short testing, if they turn it off, it will remain off even after a restart.
Securly just started blocking securlypass.com the other day. However, I am sure there are many websites that will do the same thing.

I just posting to give a heads-up and see if there is anything I missed on my end.

9 REPLIES 9

Kim_Nilsson
Admin Moderator

What does it actually do?

--
https://wheretofind.me/@NoSubstitute

kuhnd
New Contributor II

It makes the Securly filter stop working.  I do have javascript://* blocked from last year.  Which stopped the bookmark version. 

Here are a couple of sites that do the same thing

Here is what you move into the new tab:  It looks to point to the Securly extension and then a category but not sure which one.

chrome-extension://iheobagjkfklnlikgihanlhcddjoihkg/blocked.html?category=PHN0eWxlPip7dmlzaWJpbGl0eTpoaWRkZW59PC9zdHlsZT4KICAgIDxpZnJhbWUgc3JjZG9jPSI8c2NyaXB0IHNyYz0nYmxvYjpodHRwczovL3d3dy5kaXNhYmxlc2VjdXJseS5jb20vZWY3ZDM4NDUtZDBkZC00NTZiLTljMTMtODcyOTk2NjIxMTkyJz48L3NjcmlwdD4iPgogICAgICAgIEhpLiBJZiB5b3UgY2FuIHJlYWQgdGhpcywgdGhlIGV4cGxvaXQgZGlkbid0IHdvcmsuCiAgICAgICAgV2FpdCBhIGNvdXBsZSBvZiB3ZWVrcy4gV2UnbGwgYmUgYmFjay4uLgogICAgPC9pZnJhbWU%2B

rdnixon
Contributor

Appear to be blocked as far as I can see. You can also bung them in your url blacklist.

kuhnd
New Contributor II

I contacted Securly support and was told it was a known issue the developers were working to resolve.  So for now, all someone has to do is create another website or URL and the issue will continue.  I was hoping to figure out a stop for now.  In the securly filter admin side, you can see when the students drag into the new tab.  I tried to block that in securly which works but it is too slow.  One still has time to flip the switch and turn off Securly before the block kicks in. 

Could you add the same block in the URL Block list in Google Admin Console.  I think Chrome might check the URL against the block list before loading the page with would stop it before they can turn Securly off.

Admin Console -> Devices -> Chrome -> Settings -> User & Browser -> Blocked URLs

Yep you can do that. However, I've not managed to get any of these links to do anything myself. URL Blacklist is a good place for problem things. 

kuhnd
New Contributor II

When you say you can not get the links to do anything. What are you seeing on your end?  Are you seeing them blocked?  I believe Securly might have blocked them now.  I could not get them to do anything on my regular computer.  However, when using a Chromebook with a test student, it worked for me.  

Directly visiting chrome-extension://iheobagjkfklnlikgihanlhcddjoihkg/blocked.html?category=PHN0eWxlPip7dmlzaWJpbGl0eTpoaWRkZW59PC9zdHlsZT4KICAgIDxpZnJhbWUgc3JjZG9jPSI8c2NyaXB0IHNyYz0nYmxvYjpodHRwczovL3d3dy5kaXNhYmxlc2VjdXJseS5jb20vZWY3ZDM4NDUtZDBkZC00NTZiLTljMTMtODcyOTk2NjIxMTkyJz48L3NjcmlwdD4iPgogICAgICAgIEhpLiBJZiB5b3UgY2FuIHJlYWQgdGhpcywgdGhlIGV4cGxvaXQgZGlkbid0IHdvcmsuCiAgICAgICAgV2FpdCBhIGNvdXBsZSBvZiB3ZWVrcy4gV2UnbGwgYmUgYmFjay4uLgogICAgPC9pZnJhbWU%2B

Produces a page is blocked message from Chrome. Try to visit a site blocked by Securly and its still blocked. So no obvious effect at all. This is on ChromeOS. Source sites are all blocked.

kuhnd
New Contributor II

Thanks for responding.  I get a red page for a second and then the INSECURLY exploit pops up on my end.  I wonder if I am missing something on my end.  I try to go through and add blocks and things where I hear about them but I must be missing something.