Pentesting JWTs: Cracking weak keys using JWT_TOOL

Ali Issa · Intermediate ·🔧 Backend Engineering ·2y ago

Key Takeaways

This video teaches how to crack weak keys in JSON Web Tokens using JWT_TOOL

Original Description

In this video we are performing a penetrationtest of a JWT by cracking its weak password. More specifically we are solving a #portswigger lab titled JWT authentication bypass via weak signing key using a popular tool called #JWT_Tool. Please note that this content is purely educational and targeted towards software engineers and security professionals to educate them on how to find and address vulnerabilities in web applications. Please act responsibly. #burpsuite #portswigger #pentest #JWT_tool #bugbounty #jsonwebtoken #jwt
Watch on YouTube ↗ (saves to browser)
Sign in to unlock AI tutor explanation · ⚡30

Related Reads

Up next
/dev/push: An Open Vercel Alternative to Ship Your Apps Quickly
Ian Wootten
Watch →