JWT bypass

JWT bypass

Hello to all!

I'm trying to test some vulnerabilities on a website with some archive data, and i want to know the best way i can bypass a JWT. I tried the "none" vulnerability and some others but i think the main problem is that i cannot decode the previously JWT data, i think it's encoded or something. I'm not a professional, just trying here and needing some help.

Thank you all!

https://preview.redd.it/8bs9bgqihq8e1.png?width=896&format=png&auto=webp&s=96252ddb58081a5ae59051f0ef48c6cad81e112f

submitted by /u/GabrielYudenich
[link] [comments]


from hacking: security in practice https://ift.tt/chA5ZPg

Comments