Hacksplaining
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance
Sign Up
Log In
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance Sign Up Log In

XML Bombs

The whole thing tops out at about 3 gigabytes of data, which will probably crash your server. (If it doesn't, the attacker can easily add a few more lines to the submitted XML file.)

An XML bomb exploding
Lessons
Glossary
Terms and Conditions
Privacy Policy

© 2026 Hacksplaining Inc. All rights reserved. Questions? Email us at support@hacksplaining.com