<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
  <url>
    <loc>https://zerotrace.in/</loc>
    <changefreq>weekly</changefreq>
    <priority>1</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog</loc>
    <changefreq>weekly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/community</loc>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/community/zerotrace-arena-ctf-1</loc>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/contact</loc>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/services/soc-setup</loc>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/services/vapt</loc>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/services/threat-detection</loc>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/services/security-audits</loc>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/services/siem-integration</loc>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/services/red-teaming</loc>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/services/ai-automation</loc>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/services/ai-security-monitoring</loc>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/services/workflow-automation</loc>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/services/fine-tuned-models</loc>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/services/rag-enterprise-search</loc>
    <changefreq>monthly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/infrastructure-misconfiguration-information-disclosure-mmu4qpoo</loc>
    <lastmod>2026-04-26T12:09:05.120Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/xploitathon-2026-round-2-writeup-mmnra7dz</loc>
    <lastmod>2026-04-09T08:00:13.334Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/bash-notes-mmp9idzy</loc>
    <lastmod>2026-04-13T18:57:34.039Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/tcs-hackquest-s10-round-1-writeup-mmnqxvdo</loc>
    <lastmod>2026-04-22T07:12:02.429Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/writeup-by-your-team-rad-20-ctf-7th-place-3050-points-mmsokta5</loc>
    <lastmod>2026-04-23T12:50:51.730Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/privilege-escalation-to-admin-via-missing-authorization-on-apiv1adminpromote-bro-mmtivqkx</loc>
    <lastmod>2026-04-22T20:43:25.184Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/broken-session-management-token-regeneration-on-login-enables-persistent-account-mmtlkzib</loc>
    <lastmod>2026-04-24T02:28:48.103Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/thunder-cipher-ctf-writeup---team-sudo-mmnzwobc</loc>
    <lastmod>2026-04-26T05:15:09.279Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/sql-injection-in-search-api-leading-to-unauthorized-access-to-private-data-mmvpof6x</loc>
    <lastmod>2026-04-19T20:21:51.170Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/rad-20-writeup---byte-battalion-mmrq9grh</loc>
    <lastmod>2026-04-26T13:46:27.159Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/capture-the-flag-ctf-root-access-denied-20-rad-powered-by-the-verge-2026-mmrjacon</loc>
    <lastmod>2026-04-16T23:44:41.281Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/broken-access-control-in-api-idor-mmu6p86n</loc>
    <lastmod>2026-04-14T06:29:49.530Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/broken-access-control-in-admin-api-leading-to-credential-exposure-and-account-ta-mmu55tsb</loc>
    <lastmod>2026-04-18T14:56:42.318Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/anonymous-ftp-access-exposes-ssh-credentials-full-server-shell-access-mmtlui19</loc>
    <lastmod>2026-04-09T07:59:25.361Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/rad-20-writeup---d3m0-mmtf5lsq</loc>
    <lastmod>2026-04-25T15:15:30.295Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/privilege-escalation-via-unauthenticated-admin-promote-endpoint-broken-function--mmtj1i1e</loc>
    <lastmod>2026-04-09T07:59:47.439Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/plaintext-password-storage-in-sqlite-database-mmtm72iv</loc>
    <lastmod>2026-04-23T01:58:02.943Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/server-side-request-forgery-via-apifetch-manifest-aws-metadata-credential-theft-mmtel9s8</loc>
    <lastmod>2026-04-09T08:01:49.381Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/privilege-escalation-to-admin-via-missing-authorization-on-apiv1adminpromote-inv-mmtj4g1m</loc>
    <lastmod>2026-04-24T09:11:50.808Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/directory-traversal-in-file-upload-api-allowing-arbitrary-file-write-mmtgdk0v</loc>
    <lastmod>2026-04-19T07:53:53.769Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/rad-20-ctf-writeup-shadowdrive-mmu8ga94</loc>
    <lastmod>2026-04-25T03:12:06.924Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/weak-flask-secret-key-enables-session-cookie-forgery-privilege-escalation-to-adm-mmtj7ke1</loc>
    <lastmod>2026-04-09T07:59:27.533Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/html-injection-and-reflected-cross-site-scripting-in-search-endpoint-mmtgws3u</loc>
    <lastmod>2026-04-18T12:30:21.502Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/open-redirect-via-unsanitized-url-parameter-mmthjgs5</loc>
    <lastmod>2026-04-26T13:01:30.887Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/aws-credentials-loaded-in-server-environment-partial-disclosure-to-all-authentic-mmtj8rop</loc>
    <lastmod>2026-04-20T12:43:33.576Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/plaintext-password-storage-and-bulk-exposure-via-api-responses-complete-credenti-mmtjbi41</loc>
    <lastmod>2026-04-18T18:56:56.053Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/double-extension-file-upload-leading-to-potential-remote-code-execution-rce-mmu1i9xd</loc>
    <lastmod>2026-04-10T13:04:42.621Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/remote-command-execution-in-cicd-build-api-via-unsanitized-yaml-hook-mmu1s1vu</loc>
    <lastmod>2026-04-18T08:37:36.993Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/broken-function-level-authorization-on-admin-user-dump-endpoint-complete-databas-mmtjgilm</loc>
    <lastmod>2026-04-12T21:15:11.757Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/rate-limit-bypass-via-x-forwarded-for-header-spoofing-on-promo-claim-endpoint-un-mmtjhs7e</loc>
    <lastmod>2026-04-24T12:20:43.606Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/rate-limit-bypass-via-manipulation-of-x-forwarded-for-header-in-promo-claim-api-mmu2wdtt</loc>
    <lastmod>2026-04-09T07:59:21.605Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/unsigned-saml-assertion-role-attribute-can-be-tampered-to-escalate-any-user-to-s-mmtkcgse</loc>
    <lastmod>2026-04-17T17:05:37.822Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/gods-eye-three-stage-attack-chain-business-logic-idor-exif-metadata-extraction-mmtktxks</loc>
    <lastmod>2026-04-23T08:53:24.430Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/sql-injection-in-apiproperties-full-database-extraction-mmtl5qj9</loc>
    <lastmod>2026-04-12T12:08:35.284Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/sql-injection-in-property-search-api-leading-to-database-disclosure-and-credenti-mmtdcsb1</loc>
    <lastmod>2026-04-26T13:02:47.864Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/privilege-escalation-via-unauthenticated-admin-promote-endpoint-broken-function--mmteg9i8</loc>
    <lastmod>2026-04-15T19:20:32.761Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/remote-code-execution-via-yaml-hook-injection-blacklist-bypass-as-root-mmtldn1q</loc>
    <lastmod>2026-04-18T13:44:13.681Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/unauthenticated-promo-code-claim-broken-function-level-authorization-mmteec0x</loc>
    <lastmod>2026-04-09T07:59:32.116Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/authentication-bypass-via-client-supplied-role-parameter-leading-to-administrati-mmtg7h88</loc>
    <lastmod>2026-04-25T02:18:49.486Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/plaintext-password-storage-and-exposure-in-api-responses-complete-credential-com-mmtejhig</loc>
    <lastmod>2026-04-09T08:00:08.404Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/cloud-infrastructure-security-assessment-tegh-industries-ctf7-mmte9qkg</loc>
    <lastmod>2026-04-09T08:01:28.022Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/rad-20-writeup---team-rooteshwar-mmtd2krd</loc>
    <lastmod>2026-04-09T08:01:38.036Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/insecure-direct-object-reference-idor-in-user-api-leading-to-credential-disclosu-mmtdqzwc</loc>
    <lastmod>2026-04-14T12:45:26.470Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/rad-20-writeup---rudra-root-mmtljoy5</loc>
    <lastmod>2026-04-24T12:20:52.741Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://zerotrace.in/blog/rad-ctf-20-mmti5rpu</loc>
    <lastmod>2026-04-23T18:49:20.357Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
</urlset>