
CVE-2025-66413 Git for Windows is the Windows port of Git. Prior to 2.53.0(2), it is possible to obtain a user's NTLM hash by tricking them into cloning from a malicious server. Sin… https://www.cve.org/CVERecord?id=CVE-2025-66413
Post summary
The post discloses that Git for Windows versions before 2.53.0(2) allow attackers to harvest NTLM hashes by tricking users into cloning from malicious servers, with no mention of PoC, exploit tools, active exploitation, or mitigation measures.
