External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
https://thehackernews.com/2026/07/exposed-server-reveals-ai-assisted.html
https://www.securityweek.com/microsoft-disables-downloaded-file-previews-to-block-ntlm-hash-leaks/
https://www.theregister.com/2025/04/21/microsoft_apple_patch/
https://thehackernews.com/2025/04/cve-2025-24054-under-active.html
https://www.darkreading.com/cyberattacks-data-breaches/multiple-group-exploiting-ntlm-flaw
https://research.checkpoint.com/2025/cve-2025-24054-ntlm-exploit-in-the-wild/
https://github.com/aaron-kidwell/CVE-POCs
https://github.com/T0tooro/cve-2025-24054-lab
https://github.com/Fomovet/cve-2025-24071
https://github.com/Fomovet/cve-2025-24054
https://github.com/kaleth4/CVE--2025-24054
https://github.com/SecurityLayer404/CVE-2025-24054-24071---Metasploit-Module
https://github.com/DukeSec97/CVE-2025-24054
https://github.com/WhiteDominion/CVE-2025-24054_CVE-2025-24071-PoC
https://github.com/Untouchable17/CVE-2025-24054
https://github.com/Wind010/CVE-2025-24054_PoC
https://github.com/Ash1996x/CVE-2025-50154-Aggressor-Script
https://github.com/rubenformation/CVE-2025-50154
https://github.com/zenzue/CVE-2025-50154
https://github.com/Royall-Researchers/CVE-2025-24071
https://github.com/moften/CVE-2025-24054
https://github.com/helidem/CVE-2025-24054_CVE-2025-24071-PoC
https://github.com/pswalia2u/CVE-2025-24071_POC
https://github.com/xigney/CVE-2025-24054_PoC
https://github.com/heqnx/cve-poc-mon
https://github.com/Marcejr117/CVE-2025-24071_PoC
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-24054