CTF

XXE Injection: X-Men Lore Challenge at RitSec CTF 2023

XXE Injection: X-Men Lore Challenge at RitSec CTF 2023

During the RitSec CTF 2023, a challenge named “X-Men Lore” was focused on exploiting an XXE vulnerability to access sensitive data. Initial Analysis The site featured a user interface allowing the selection of characters from the X-Men series.