<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>XXE on bokkapig</title><link>https://bokkapig.pages.dev/tags/xxe/</link><description>Recent content in XXE on bokkapig</description><generator>Hugo</generator><language>en-gb</language><lastBuildDate>Sat, 28 Mar 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://bokkapig.pages.dev/tags/xxe/index.xml" rel="self" type="application/rss+xml"/><item><title>DevArea</title><link>https://bokkapig.pages.dev/writeups/devarea/</link><pubDate>Sat, 28 Mar 2026 00:00:00 +0000</pubDate><guid>https://bokkapig.pages.dev/writeups/devarea/</guid><description>Anonymous FTP exposed a Java SOAP service JAR; an MTOM XXE attack against the CXF endpoint leaked the Hoverfly admin password from a systemd unit file, then authenticated RCE via Hoverfly middleware yielded a shell as dev_ryan; privilege escalation exploited a world-writable /bin/bash by writing a SUID-creating wrapper triggered by a root-owned systemd timer.</description></item></channel></rss>