Web: https://www.youtube.com/watch?v=JzCSkB3GDQk

Jan. 13, 2022, 6:01 p.m. | SANS Offensive Operations

SANS Offensive Operations youtube.com

JWTs are an important part of how modern APIs are used, they assert your identify to the application. You will see them in SOAP, REST, and GraphQL. Many decisions about authorization and access are based on the claims contained within the JWT. If there are vulnerabilities within the framework used to create them, or in implementation decisions, the impact can be high. In this talk, I will discuss how JWTs are generated and used. Security issues can include information disclosure, …

2021 hacking jwt pen test

