
We are still seeing this on engagements, so I wrote a tool. DameFlare is a Python 3 exploit for CVE-2019-3980. Unauthenticated RCE as SYSTEM via smart card auth bypass. Full credit to @TenableSecurity for the original research/POC. https://github.com/boydhacks/dameflare
Post summary
The post shares the DameFlare Python 3 exploit for CVE‑2019‑3980, notes it is being used in live engagements, and links to the code repository.
