No video

Hack JWTs with Burp Suite | Web Security Academy

  Рет қаралды 689

CorSecure

CorSecure

Күн бұрын

In this video, I talk about JSON Web Tokens (JWTs) and I solve the first JWT Attack lab in the Portswigger Web Security Academy. Let me know if you want me to do another video on JWT Attacks and solve one of the more complicated lab.
Check out the lab here: portswigger.net/web-security/...
Check out my blog here:
corsecure.blog

Пікірлер: 7
@amyt5031
@amyt5031 11 ай бұрын
So helpful! Thanks for the information
@cedricflutter311
@cedricflutter311 11 ай бұрын
Please more vids you are great
@CorSecure
@CorSecure 11 ай бұрын
working on it! :)
@valona4432
@valona4432 5 ай бұрын
Your good bro make more videos like this please dont chamge the format becose the videos are clearly and can be understood easily
@whatsup5442
@whatsup5442 Жыл бұрын
Yo bro, do you any idea how I can decrypt SPI token? I really need help with this.
@technoindia786
@technoindia786 Жыл бұрын
ssl unpinning frida is work run time process How to set ssl unpinning permanently in apk ? frida ssl unpin can be made permanent in apk So that he doesn't have to do Frida's again to again and without root also gets ssl bypassed.
@CorSecure
@CorSecure Жыл бұрын
The best way I know how to do this would be to patch the apk with Objection. You will still need to run Objection every time to bypass SSL pinning, but you won't have to hook the binary with Frida because the Frida gadget will already be built into the binary. I have a video on my channel showing how to do this: kzbin.info/www/bejne/p5Ktc4qZqsp2f6M I don't know of a way to permanently bypass SSL pinning without heavily editing the source code of the apk to remove the pinning mechanism entirely, which would require some pretty extensive reverse engineering.
Top 10 FREE OSINT tools (with demos) for 2024 - And FREE OSINT course!
1:08:19
Make A Python Website As Fast As Possible!
22:21
Tech With Tim
Рет қаралды 675 М.
Amazing weight loss transformation !! 😱😱
00:24
Tibo InShape
Рет қаралды 63 МЛН
Playing hide and seek with my dog 🐶
00:25
Zach King
Рет қаралды 35 МЛН
Spot The Fake Animal For $10,000
00:40
MrBeast
Рет қаралды 185 МЛН
Best Toilet Gadgets and #Hacks you must try!!💩💩
00:49
Poly Holy Yow
Рет қаралды 21 МЛН
JSON Web Keys (JWK & JWT) - "Emergency" - HackTheBox Business CTF
29:09
Cracking JSON Web Tokens
14:34
The Cyber Mentor
Рет қаралды 56 М.
Hack WebSockets with Burp Suite
8:13
CorSecure
Рет қаралды 333
JWT Authentication Bypass via kid Header Path Traversal
15:11
Intigriti
Рет қаралды 4,1 М.
How Hackers Hack JSON Web Tokens
13:15
Loi Liang Yang
Рет қаралды 90 М.
Attacking JWT - Header Injections
18:28
The Cyber Mentor
Рет қаралды 13 М.
Hack JWT using JSON Web Tokens Attacker BurpSuite extensions
17:23
thehackerish
Рет қаралды 43 М.
HOW TO BYPASS OTP THROUGH THE BURPSUITE
3:34
𝖈𝖞𝖇𝖊𝖗𝖘𝖍𝖗𝖊𝖊𝖏𝖎
Рет қаралды 4,9 М.
Amazing weight loss transformation !! 😱😱
00:24
Tibo InShape
Рет қаралды 63 МЛН