Understanding JWT Vulnerabilities: JWT Crack Attack

preview_player
Показать описание
In this video, we'll focus on JWT Crack attack using #hashcat to crack a weak JWT secret key and #burpsuite to forge a session token. To demonstrate this attack we solved #portswigger lab titled: JWT authentication bypass via weak signing key.

#penetration_testing #pentest #ethicalhacking #owasptop10 #bruteforceJWT
Рекомендации по теме
Комментарии
Автор

Very interesting! Is the cracking done online or offline?

lmanjasem