👩🎓👨🎓 Learn how you can identify potential XXE vulnerabilities in web requests. We are having a look at exploitation techniques and also learning more about DTDs and external entities.
Overview:
00:00 Intro
00:17 Lab overview
01:22 What are DTDs?
02:21 What are external entities?
03:30 Exploiting the app
05:23 Conclusion
For more information, check out https://blog.intigriti.com/hackademy/....
🔗 Portswigger XXE Challenge: https://portswigger.net/web-security/...
---
🧑💻 Sign up and start hacking right now - https://go.intigriti.com/register
👾 Join our Discord - https://go.intigriti.com/discord
🎙️ This show is hosted by / pascalsec (@Hacksplained ) & / intigriti
👕 Do you want some Intigriti Swag? Check out https://swag.intigriti.com/