null Global Committee elections are coming up! See the election repository for more information.

Abstract

This session will cover below mentioned scenarios of XXE
Basics of XML
Exploiting XXE to retrieve files
Exploiting XXE to perform SSRF attacks
Exploiting blind XXE exfiltrate data out-of-band
Exploiting blind XXE to retrieve data via error messages

Speaker

Ankit Patel

Timing

Starts at Saturday March 14 2020, 11:45 AM. The sessions runs for about 1 hour.

Resources