A Fun Attack Path, Starting with XXE

I don’t tend to write a lot of blog posts, I just never feel as if they are that interesting, but this one was fun and someone asked me to write it up. Enjoy!

3 Likes

from just read files to rce, great job!

Recently, I’ve found out a new tool to exploit this kind of attacks:

1 Like

Im going to add this to a running xxe thread we have!

Cool! Will share it with my pals as well :slight_smile: