In case someone is interested, I had the pleasure of giving a Webinar for eLearnSecurity on Tuesday this week:
- Webinar Title: “XXE Exposed”
- Summary:
Brief coverage of Web Service Types, SQLi and XSS against Web Services to then talk about XXE and XEE attacks and mitigation.Heavily inspired on the “Practical Web Defense” (PWD) style of pwnage + fixing
- Slides: http://www.slideshare.net/abrahamaranguren/xxe-exposed-sqli-xss-xxe-and-xee-against-web-services
- Full recording: https://www.elearnsecurity.com/collateral/webinar/xxe-exposed/
NOTE: (~20 minute) XXE + XEE Demo Recording starts at minute 25