No video

JSON Web Token (JWT) Exploit with SQL Injection | CTF Walkthrough

  Рет қаралды 5,486

Motasem Hamdan

Motasem Hamdan

Күн бұрын

In this video walk-through, we covered exploiting vulnerable implementation of JWT tokens encryption along with SQL injection as part of HTB under construction under the beginner track.
**********
Receive Cyber Security Field Notes and Special Training Videos
/ @motasemhamdan
*******
Instagram
/ dev.stuxnet
Twitter
/ manmotasem
Facebook
/ motasemhamdantty
LinkedIn
[1]: / motasem-hamdan-7673289b
[2]: / motasem-eldad-ha-bb424...
Website
www.motasem-no...
Patreon
www.patreon.co...
Backup channel
/ @themastermindclips
My Movie channel:
/ @certificates-reviews
******

Пікірлер: 20
@RearAdmiralNashiba
@RearAdmiralNashiba 5 ай бұрын
Having tried a number of walkthroughs for this challenge, this was the only one to render the steps clear and straightforward. Subscription earned.
@MotasemHamdan
@MotasemHamdan 5 ай бұрын
Thanks !
@blackthorne-rose
@blackthorne-rose 11 ай бұрын
Yours was the only walkthrough or writeup i could find that wasn't a virtual minefield of incomplete or incorrect procedures and misleading statements. Kudos! I'll be checking out your channel to keep learning!
@Muh4nn4D
@Muh4nn4D 2 жыл бұрын
محتواك رهييب استفد كثير منك شكرا لك
@mkowalski997
@mkowalski997 2 жыл бұрын
Great explained, thank you for the lesson.
@JohnSmith-wz7he
@JohnSmith-wz7he Жыл бұрын
Brilliant Work! thank you very much
@herllo2u2
@herllo2u2 Ай бұрын
You can print the public key in python and it will convert the into new lines for you.
@tylertbone9
@tylertbone9 2 жыл бұрын
15:34 "what the shit man" I felt that
@MotasemHamdan
@MotasemHamdan 2 жыл бұрын
:)
@aMODiEswede
@aMODiEswede Жыл бұрын
LOL
@ismailarame3756
@ismailarame3756 2 жыл бұрын
nadi canadi
@SuperMercadier
@SuperMercadier Жыл бұрын
Hey Motasem Hamdan I'm get 500 error with generated token. Other users have same problem. I don't understand what I did wrong... 😕
@johnnyromein3917
@johnnyromein3917 2 жыл бұрын
I have tried to replicate and keep getting a 500 error as soon as i use a generated token. o\ thx for showing that it can work though.
@anthonyn189
@anthonyn189 2 жыл бұрын
I was having the same issue. My problem was forgetting to add the query terminator "--" at the end of the query before converting it to a token.
@SuperMercadier
@SuperMercadier Жыл бұрын
I'm still having problems with this. Did you find out how to solve it?
@SuperMercadier
@SuperMercadier Жыл бұрын
@@anthonyn189 Where do I put this "--" exactly?
@ffenixx
@ffenixx Жыл бұрын
@@SuperMercadier the key must end with -----END PUBLIC KEY----- and check if you have another empty line after this line. Linux sometimes wants a blank line at the end of a file/command
@infosec1065
@infosec1065 Жыл бұрын
@@ffenixx yep that worked for me
@user-fn4dt9sk7s
@user-fn4dt9sk7s 2 жыл бұрын
awesome video!, keep it up
Windows Privilege Escalation With Juicy Potato | CTF Walkthrough
31:46
JSON Web Keys (JWK & JWT) - "Emergency" - HackTheBox Business CTF
29:09
when you have plan B 😂
00:11
Andrey Grechka
Рет қаралды 5 МЛН
Gli occhiali da sole non mi hanno coperto! 😎
00:13
Senza Limiti
Рет қаралды 24 МЛН
Attacking JWT - Header Injections
18:28
The Cyber Mentor
Рет қаралды 13 М.
Reverse Engineering with Ollydbg | CTF Walkthrough
8:03
Motasem Hamdan
Рет қаралды 8 М.
Exploiting Server Side Request Forgery (SSRF) | CTF Walkthrough
32:09
Find and Exploit NoSQL Injection
11:03
The Cyber Mentor
Рет қаралды 16 М.
Hack JWT using JSON Web Tokens Attacker BurpSuite extensions
17:23
thehackerish
Рет қаралды 43 М.
FastAPI Authentication with  JWT (JSON Web Tokens)
56:18
Bek Brace
Рет қаралды 97 М.
Cracking JSON Web Tokens
14:34
The Cyber Mentor
Рет қаралды 57 М.
JWT Authentication Bypass via kid Header Path Traversal
15:11
Intigriti
Рет қаралды 4,2 М.
JWT jku&x5u = ❤️ by @snyff #NahamCon2020
17:00
NahamSec
Рет қаралды 4,5 М.