CVE-2025-24071: NTLM Hash Leak via RAR/ZIP Extraction and .library-ms File
☆405Mar 20, 2025Updated last year
Alternatives and similar repositories for CVE-2025-24071_PoC
Users that are interested in CVE-2025-24071_PoC are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PoC Exploit for the NTLM reflection SMB flaw.☆711Feb 18, 2026Updated 5 months ago
- ☆202Mar 28, 2025Updated last year
- SharpSuccessor is a .NET Proof of Concept (POC) for fully weaponizing Yuval Gordon’s (@YuG0rd) BadSuccessor attack from Akamai.☆421Sep 26, 2025Updated 10 months ago
- This tool exploits Golden DMSA attack against delegated Managed Service Accounts.☆100Jul 15, 2025Updated last year
- Metasploit module for CVE-2025-24071 - Windows NTLM Hash Leak via .library-ms☆25Mar 18, 2025Updated last year
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. Implemented in C#…☆372Feb 2, 2026Updated 5 months ago
- ☆239Oct 8, 2024Updated last year
- ☆268Jul 8, 2025Updated last year
- Generate and Manage KeyCredentialLinks☆257Jul 17, 2026Updated last week
- Leak of any user's NetNTLM hash. Fixed in KB5040434☆262Aug 13, 2024Updated last year
- Lateral Movement via Bitlocker DCOM interfaces & COM Hijacking☆459Jun 27, 2025Updated last year
- Enumerate Domain Users Without Authentication☆305Apr 22, 2025Updated last year
- New 0 day vulnerability allowing to leak NTLM hashes from browsers with one click☆209Nov 18, 2025Updated 8 months ago
- Smart keylogging capability to steal SSH Credentials including password & Private Key☆154Mar 26, 2025Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Automating the MITM attack on WSUS☆384Jul 16, 2026Updated last week
- A Rust implementation of GodPotato — abusing SeImpersonate to gain SYSTEM privileges. Includes a TCP-based reverse shell and indirect NTA…☆367Mar 17, 2026Updated 4 months ago
- Active Directory data ingestor for BloodHound Community Edition written in Rust. 🦀☆552Jun 29, 2026Updated 3 weeks ago
- A tool for coercing and relaying Kerberos authentication over DCOM and RPC.☆151Jul 17, 2025Updated last year
- LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49113☆521Jan 2, 2025Updated last year
- Proof of concept & details for CVE-2025-21298☆197Jan 20, 2025Updated last year
- Local SYSTEM auth trigger for relaying☆173Jul 22, 2025Updated last year
- SharePoint WebPart Injection Exploit Tool☆312Nov 28, 2025Updated 8 months ago
- RunAs Utility Credential Stealer implementing 3 techniques : Hooking CreateProcessWithLogonW, Smart Keylogging, Remote Debugging☆210Mar 6, 2025Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Multiplayer pivoting solution☆529Apr 29, 2026Updated 3 months ago
- Dig your way out of networks like a Meerkat using SSH tunnels via ClickOnce.☆301May 2, 2025Updated last year
- Windows File Explorer Spoofing Vulnerability (CVE-2025-24071)☆35Mar 27, 2025Updated last year
- Generate an Alphabetical Polymorphic Shellcode☆145Aug 19, 2025Updated 11 months ago
- POC exploit for CVE-2025-21333 heap-based buffer overflow. It leverages WNF state data and I/O ring IOP_MC_BUFFER_ENTRY☆232Apr 12, 2025Updated last year
- The DCERPC only printerbug.py version☆234Oct 30, 2025Updated 8 months ago
- ☆272May 19, 2025Updated last year
- This is a PoC code to exploit the IngressNightmare vulnerabilities (CVE-2025-1097, CVE-2025-1098, CVE-2025-24514, and CVE-2025-1974).☆248Mar 26, 2025Updated last year
- ☆165May 5, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A robust Windows Process Executable Packer and Launcher implementation written in Rust for Windows x64 systems.☆50Jan 9, 2025Updated last year
- Complete list of LPE exploits for Windows (starting from 2023)☆958Jul 15, 2026Updated 2 weeks ago
- Extract and execute a PE embedded within a PNG file using an LNK file.☆477Nov 2, 2024Updated last year
- Extract Windows credentials directly from VM memory snapshots and virtual disks☆1,452Jun 7, 2026Updated last month
- Morpheus is an lsass stealer that extracts lsass.exe in RAM and exfiltrates it via forged and crypted NTP packets. For authorized testin…☆168Jun 19, 2025Updated last year
- Tool to enumerate privileged Scheduled Tasks on Remote Systems☆312Mar 29, 2026Updated 3 months ago
- CVE-2025-49144 PoC for security researchers to test and try.☆88Jun 30, 2025Updated last year