<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd" xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
<url>
<loc>https://burakdirlik.dev/posts/Active-Directory-RBCD-Attack/</loc>
<lastmod>2026-04-25T01:38:24+03:00</lastmod>
</url>
<url>
<loc>https://burakdirlik.dev/posts/mass-assignment-vulnerability/</loc>
<lastmod>2026-04-25T01:39:00+03:00</lastmod>
</url>
<url>
<loc>https://burakdirlik.dev/posts/jwt-attacks/</loc>
<lastmod>2026-04-25T01:38:42+03:00</lastmod>
</url>
<url>
<loc>https://burakdirlik.dev/posts/ssrf-attacks/</loc>
<lastmod>2026-04-25T01:39:45+03:00</lastmod>
</url>
<url>
<loc>https://burakdirlik.dev/posts/graphql-vulnerabilities/</loc>
<lastmod>2026-06-06T19:00:52+03:00</lastmod>
</url>
<url>
<loc>https://burakdirlik.dev/categories/</loc>
<lastmod>2026-06-06T19:01:12+03:00</lastmod>
</url>
<url>
<loc>https://burakdirlik.dev/tags/</loc>
<lastmod>2026-06-06T19:01:12+03:00</lastmod>
</url>
<url>
<loc>https://burakdirlik.dev/archives/</loc>
<lastmod>2026-06-06T19:01:12+03:00</lastmod>
</url>
<url>
<loc>https://burakdirlik.dev/about/</loc>
<lastmod>2026-06-06T19:01:12+03:00</lastmod>
</url>
<url>
<loc>https://burakdirlik.dev/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/rbcd/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/kerberos/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/active-directory/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/mass-assignment/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/owasp/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/api-security/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/bug-bounty/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/pentest/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/broken-object-property-level-authorization/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/jwt/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/authentication/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/web-security/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/offensive-security/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/ssrf/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/cloud-security/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/aws/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/graphql/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/tags/idor/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/categories/active-directory/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/categories/privilege-escalation/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/categories/web-security/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/categories/api-security/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/categories/pentest/</loc>
</url>
<url>
<loc>https://burakdirlik.dev/categories/graphql/</loc>
</url>
</urlset>
