filmov
tv
LAB:7 Blind XXE with out-of-band interaction via XML parameter entities || Portswigger || BSCP
Показать описание
In this video, we dive into the world of blind XML external Entity(XXE) attacks, We'll be using Portswigger's Burpsuite to demonstrate this attack, which is a crucial tool for any penetration tester or security enthusiast. XXE injection attacks can lead to data exfiltration, allowing attackers to access sensitive information. By understanding how to exploit these vulnerabilities, we can better protect ourselves against XML injection attacks. So, let's get started and see how we can uncover these blind XXE vulnerabilities using Portswigger Labs and Burpsuite.