Pentest & Bug Bounty Resources and Techniques
search
⌘Ctrlk
Pentest & Bug Bounty Resources and Techniques
  • rectangles-mixedPentest & Bug Bounty Resources and Techniques
    • arrow-right-to-arcIntroduction
    • list-checkTests Checklist
    • face-eyes-xmarksOSINT
    • diagram-previousCommunications Security
    • arrow-down-up-across-lineNetworking
    • face-iciclesBrute Force
    • globe-pointerWeb
      • projectorEndpoint Discovery
      • cubesInfrastructure & Configuration
      • syringeInjection
      • shuffleSSRF & XXE
        • Labs & Resources
        • Tools
        • SVG SSRF Cheatsheet
        • XXE - XEE - XML External Entity
      • hockey-maskJWT Vulnerabilities (Json Web Tokens)
      • moneroHTTP/S DoS
    • mobileMobile
  • mittenLets Practice
    • laptop-codeVirtual Machines
    • layer-groupVulnerable App
    • dog-leashedGuided Labs
    • turtleCTFs
  • Group 1
    • atomAI
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. rectangles-mixedPentest & Bug Bounty Resources and Techniqueschevron-right
  2. globe-pointerWebchevron-right
  3. shuffleSSRF & XXE

Labs & Resources

PortSwigger Web Security Academy - XXE injection: https://portswigger.net/web-security/xxearrow-up-right

Exploitation :XML External Entity (XXE): https://gupta-bless.medium.com/exploitation-xml-external-entity-xxe-1f5f3e7bc5c4arrow-up-right

Exploiting XXE for SSRF: https://gupta-bless.medium.com/exploiting-xxe-for-ssrf-c23892374c0carrow-up-right

PreviousSSRF & XXEchevron-leftNextToolschevron-right

Last updated 1 year ago