Cybersecurity researchers are being warned of a fake PoC exploit for CVE-2024-49113 called ‘LDAPNightmare’, which targets Windows Lightweight Directory Access Protocol (LDAP) vulnerabilities in order to exfiltrate computer and network data. Researchers are advised to verify repository authenticity, prioritize official sources and monitor for suspicious activity to stay safe.
Fake LDAPNightmware exploit on GitHub spreads infostealer malware
A deceptive proof-of-concept (PoC) exploit for “LDAPNightmare” on GitHub lures users into downloading infostealer malware. The malicious repository project tricks users into infecting their systems