xxe topic
revsuit
RevSuit is a flexible and powerful reverse connection platform designed for receiving connection from target host in penetration.
dtd-finder
List DTDs and generate XXE payloads using those local DTDs.
ZimbraExploit
Zimbra邮件系统漏洞 XXE/RCE/SSRF/Upload GetShell Exploit 1. (CVE-2019-9621 Zimbra<8.8.11 XXE GetShell Exploit)
XXE-study
This repository contains various XXE labs set up for different languages and their different parsers. This may alternatively serve as a playground to teach or test with Vulnerability scanners / WAF ru...
Auditing-Vulnerabilities
In this repository I'll host my research and methodologies for auditing vulnerabilities
pentest-wiki
pwnig all the (web)things
dotnet-security-unit-tests
A web application that contains several unit tests for the purpose of .NET security
BlindRef
BlindRef serves as the basis for an automated Blind-Based XXE Exploitation Framework
MyPayloads
Just a useless set of payload created by me. Saved here for remembrance.
svg2raster-cheatsheet
A cheatsheet for exploiting server-side SVG rasterization.