Row 52299

Row ID: 52299 | Dataset Entry | Axioma AXP Content Repository

Content Data

This page contains data entry 52299 from the Axioma AXP content repository. The structured data below represents the complete record for this entry.

- The article explores the use of XSL technology to test for vulnerabilities in web browsers, particularly in Chrome using LibXSLT.

- It delves into the functionality of XML External Entities, XInclude, and XSL's document() function for loading remote files and displaying content.

- The author shares their experience crafting an XSL file to access sensitive files like iOS /etc/hosts and testing offline HTML to PDF tools for file reading.

- Various tests were conducted on different platforms to understand the vulnerabilities and differences in sandboxes, with recommendations on preventing such attacks in applications using LibXSLT.

- The article concludes with details on POCs and testing methodologies for exploiting XXE vulnerabilities.

Source: https://swarm.ptsecurity.com/xxe-chrome-safari-chatgpt/

Summarized by Nuse AI

FieldValue
text - The article explores the use of XSL technology to test for vulnerabilities in web browsers, particularly in Chrome using LibXSLT. - It delves into the functionality of XML External Entities, XInclude, and XSL's document() function for loading remote files and displaying content. - The author shares their experience crafting an XSL file to access sensitive files like iOS /etc/hosts and testing offline HTML to PDF tools for file reading. - Various tests were conducted on different platforms t…
label r/chatgpt
dataType post
communityName r/ChatGPT
datetime 2024-05-22
username_encoded Z0FBQUFBQm5Lak1UdS0yaG9MUDgwSlBFdjJlTVQwdmxBQ0g5djc0aEtKd0wxU1NzYk1HSFc4N0RwM0M4YWh6SmZ1T1QyS1RORUxzX2ZWMV9XX21YQXg0TTF0c3VUNl84WUE9PQ==
url_encoded Z0FBQUFBQm5Lak9qajdCelpnZzJqWHI3dFdCeFpVOGNpNnJzMWxuYVpod2pYenlVbTliOEFraXBmRExQTnBKa2xLcmhSNVdGYTJ5NV8xRmMzSFpUNVMxdFBObUlRcHZJVFM5bUJEVXpocjd6NWM0Z3NnQlYxY3dwSG11OG1GaXRoT2hWbWZsR2otY1FZcU5yRURjMS1jaDA1NGdZM0M1b0gtT1FnQmJQUDl0aTlpTThMQ2RHWV9fQ0JhZ3NQaFAzb3BnMDd6RmlsZk9L

Raw Record

{
  "text": "- The article explores the use of XSL technology to test for vulnerabilities in web browsers, particularly in Chrome using LibXSLT.\n\n- It delves into the functionality of XML External Entities, XInclude, and XSL's document() function for loading remote files and displaying content.\n\n- The author shares their experience crafting an XSL file to access sensitive files like iOS /etc/hosts and testing offline HTML to PDF tools for file reading.\n\n- Various tests were conducted on different platforms to understand the vulnerabilities and differences in sandboxes, with recommendations on preventing such attacks in applications using LibXSLT.\n\n- The article concludes with details on POCs and testing methodologies for exploiting XXE vulnerabilities.\n\nSource: https://swarm.ptsecurity.com/xxe-chrome-safari-chatgpt/\n\nSummarized by Nuse AI ",
  "label": "r/chatgpt",
  "dataType": "post",
  "communityName": "r/ChatGPT",
  "datetime": "2024-05-22",
  "username_encoded": "Z0FBQUFBQm5Lak1UdS0yaG9MUDgwSlBFdjJlTVQwdmxBQ0g5djc0aEtKd0wxU1NzYk1HSFc4N0RwM0M4YWh6SmZ1T1QyS1RORUxzX2ZWMV9XX21YQXg0TTF0c3VUNl84WUE9PQ==",
  "url_encoded": "Z0FBQUFBQm5Lak9qajdCelpnZzJqWHI3dFdCeFpVOGNpNnJzMWxuYVpod2pYenlVbTliOEFraXBmRExQTnBKa2xLcmhSNVdGYTJ5NV8xRmMzSFpUNVMxdFBObUlRcHZJVFM5bUJEVXpocjd6NWM0Z3NnQlYxY3dwSG11OG1GaXRoT2hWbWZsR2otY1FZcU5yRURjMS1jaDA1NGdZM0M1b0gtT1FnQmJQUDl0aTlpTThMQ2RHWV9fQ0JhZ3NQaFAzb3BnMDd6RmlsZk9L"
}

Entry Information