Pentesting notes
CtrlK
  • ๐Ÿ /home/kabaneridev/.pt-notes
  • ๐Ÿ†Certification Preparation
    • โœ…CPTS - Completed
    • ๐Ÿ“˜CWEE Preparation
      • Injection Attacks
      • Attacking Authentication Mechanisms
        • JWT
          • Attacking Signature Verification
          • Attacking the Signing Secret
          • Algorithm Confusion
          • Further JWT Attacks
          • JWT Tools & Prevention
        • OAuth
        • OAuth Vulnerability Prevention
        • SAML
        • SAML Lab Setup
      • Advanced XSS and CSRF Exploitation
      • [HTTPS/TLS Attacks]
    • โœ…PJPT - Completed
  • ๐Ÿ”งCore Knowledge Areas
    • ๐Ÿ”Information Gathering
    • ๐ŸงLinux Privilege Escalation
    • ๐ŸชŸWindows Privilege Escalation
    • ๐Ÿ› ๏ธTools & Utilities
Powered by GitBook
On this page
  1. ๐Ÿ†Certification Preparation
  2. ๐Ÿ“˜CWEE Preparation
  3. Attacking Authentication Mechanisms

JWT

Attacking Signature VerificationAttacking the Signing SecretAlgorithm ConfusionFurther JWT AttacksJWT Tools & Prevention
PreviousAttacking Authentication MechanismsNextAttacking Signature Verification

Last updated 2 days ago