Offensive Xxe

XML External Entity injection testing checklist: classic XXE, blind XXE (out-of-band), XXE via file upload (SVG/docx), XXE in SOAP/REST, error-based XXE, XInclude attacks, and XXE filter bypass. Use for web app XXE testing and bug bounty. Use only for authorized security research, training, or assessment.

26zl 9c5c402 28.2 KB Updated

File contents

26zl/cybersec-toolkit/tree/main/.claude/skills/offensive-xxe commit 9c5c40244e

Frequently asked questions

npx skillmds@latest add 26zl/offensive-xxe