[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[FD] XML Schema, DTD, and Entity Attacks: A Compendium of Known Techniques
- To: fulldisclosure@xxxxxxxxxxxx
- Subject: [FD] XML Schema, DTD, and Entity Attacks: A Compendium of Known Techniques
- From: "Timothy D. Morgan" <tmorgan@xxxxxxxxxxxxx>
- Date: Wed, 21 May 2014 11:48:37 -0700
Hi FD,
We have released a new research paper which attempts to be the most
comprehensive reference yet published on XXE attacks and related techniques. We
hope the community finds this useful:
http://vsecurity.com/download/papers/XMLDTDEntityAttacks.pdf
Comments welcome.
Cheers,
tim
@ecbftw
_______________________________________________
Sent through the Full Disclosure mailing list
http://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: http://seclists.org/fulldisclosure/