Pentest & Bug Bounty Resources and Techniques
Ctrlk
  • Pentest & Bug Bounty Resources and Techniques
    • Introduction
    • Tests Checklist
    • OSINT
    • Communications Security
    • Networking
    • Brute Force
    • Web
      • Endpoint Discovery
      • Infrastructure & Configuration
      • Injection
      • SSRF & XXE
        • Labs & Resources
        • Tools
        • SVG SSRF Cheatsheet
        • XXE - XEE - XML External Entity
      • JWT Vulnerabilities (Json Web Tokens)
      • HTTP/S DoS
    • Mobile
  • Lets Practice
    • Virtual Machines
    • Vulnerable App
    • Guided Labs
    • CTFs
  • Group 1
    • AI
Powered by GitBook
On this page
  1. Pentest & Bug Bounty Resources and Techniques
  2. Web
  3. SSRF & XXE

Labs & Resources

PortSwigger Web Security Academy - XXE injection: https://portswigger.net/web-security/xxe

Exploitation :XML External Entity (XXE): https://gupta-bless.medium.com/exploitation-xml-external-entity-xxe-1f5f3e7bc5c4

Exploiting XXE for SSRF: https://gupta-bless.medium.com/exploiting-xxe-for-ssrf-c23892374c0c

PreviousSSRF & XXENextTools

Last updated 1 year ago