<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd" xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
<url>
<loc>https://martinotommasini.github.io/posts/ScriptKiddie/</loc>
<lastmod>2021-09-19T23:20:56+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Delivery/</loc>
<lastmod>2021-07-13T02:41:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Reflected-XSS-on-custom-tag/</loc>
<lastmod>2021-06-23T10:40:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Reflected-XSS-blocked-events-and-href/</loc>
<lastmod>2021-06-23T11:50:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Spectra/</loc>
<lastmod>2021-07-13T02:41:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Reflected-XSS-with-SVG/</loc>
<lastmod>2021-06-27T11:57:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Stored-DOM-XSS/</loc>
<lastmod>2021-06-28T01:34:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Stored-XSS-to-CSRF-to-change-users-email/</loc>
<lastmod>2021-07-04T11:36:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/CSRF-with-no-defenses/</loc>
<lastmod>2021-07-13T16:18:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/XXE-to-retrieve-files/</loc>
<lastmod>2021-07-13T19:15:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/XXE-to-SSRF/</loc>
<lastmod>2021-07-13T20:02:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Business-logic-trust-client-side-controls/</loc>
<lastmod>2021-07-14T19:09:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Business-logic-negative-quantities/</loc>
<lastmod>2021-07-14T21:12:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Micro-CMS-v1/</loc>
<lastmod>2021-07-16T10:50:14+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Micro-CMS-v2/</loc>
<lastmod>2021-07-16T20:25:00+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/TheNotebook/</loc>
<lastmod>2021-09-19T23:20:56+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Armageddon/</loc>
<lastmod>2021-09-19T23:20:56+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Love/</loc>
<lastmod>2021-09-19T23:20:56+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Knife/</loc>
<lastmod>2021-09-19T23:20:56+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/posts/Schooled/</loc>
<lastmod>2021-09-19T23:34:39+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/categories/</loc>
<lastmod>2021-09-19T23:35:06+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/</loc>
<lastmod>2021-09-19T23:35:06+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/archives/</loc>
<lastmod>2021-09-19T23:35:06+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/about/</loc>
<lastmod>2021-09-19T23:35:06+02:00</lastmod>
</url>
<url>
<loc>https://martinotommasini.github.io/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/wfuzz/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/known-exploit/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/metasploit/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/custom-exploitation/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/mysql/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/hashcat/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/xss/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/reflected-xss/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/custom-tags/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/svg/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/misconfiguration/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/wordpress/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/stored-xss/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/javascript/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/csrf/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/csrf-token-bypass/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/xxe/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/ssrf/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/ec2/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/iam/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/business-logic/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/broken-access-control/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/ffuf/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/sql-injection/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/blind-sql-injection/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/like/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/union/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/jwt/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/docker/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/outdated-software/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/drupal/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/john-the-ripper/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/lfi/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/file-upload/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/rce/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/windows/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/powerup/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/msfvenom/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/always-install-elevated/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/malicious-msi/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/php/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/subdomain/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/moodle/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/tags/pkg/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/categories/hack-the-box/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/categories/machines/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/categories/portswigger-labs/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/categories/hacker101/</loc>
</url>
<url>
<loc>https://martinotommasini.github.io/page2/</loc>
</url>
</urlset>
