Bypass JWT Authentication By Bruteforcing Secret Key | PortSwigger |
Автор: Medusa
Загружено: 2023-05-18
Просмотров: 3468
In this video we'll see:
0:00 Intro
0:26 What is the secret key?
1:19 How server verifies JWT Token?
2:36 Goal
2:40 Practical Demonstration
3:41 Bruteforcing secret key
4:43 Resigning the Token
6:45 Maybe next time!
Portswigger Lab: https://portswigger.net/web-security/...
Like and Subscribe :)
Social media:
Twitter: / medusa_0xf
Blog:
/ medusa0xf
#api #bugbounty #pentesting #api #hack #bola #tryhackme #hackerone #apihacking #computerscience #javascript #python #postman #ctf #bughunting #pentesting #hacking #hackingtools #burpsuite #portswigger #ethicalhacking #OAuth #webhacking #programming #websecurity #technology #practical #artificialintelligence #web #recon #bypass
Доступные форматы для скачивания:
Скачать видео mp4
-
Информация по загрузке: