1 repositorio
Delivering modified tokens via HTTP headers or cookies to analyze server responses using canary values.
Distinct from Token Validation Services: Focuses on the transmission mechanism for security testing rather than general validation services.
Explore 1 awesome GitHub repository matching security & cryptography · Token Transmission Testing. Refine with filters or upvote what's useful.
jwt_tool is a security testing toolkit designed for analyzing, tampering with, and auditing JSON Web Tokens to identify cryptographic vulnerabilities and implementation flaws. It serves as a comprehensive suite for security auditing and vulnerability scanning, providing a debugging interface to inspect token headers and payloads. The project distinguishes itself through specialized capabilities for token forgery and secret cracking. It includes a token generator that signs custom tokens using RSA, ECDSA, and symmetric algorithms, and a brute force tool that uses high-speed dictionary attacks
Sends modified tokens to web services via headers or cookies and verifies results using canary values.