 jwt-key-id-injector
 jwt-key-id-injector 
 Vulnerability Detector
 Detects vulnerability in JWT tokens by injecting an unexpected key ID field and generating tokens with one-letter secrets
Simple python script to check against hypothetical JWT vulnerability.
51 stars
 4 watching
 11 forks
 
Language: Python 
last commit: almost 5 years ago 
Linked from   1 awesome list  
 Related projects:
| Repository | Description | Stars | 
|---|---|---|
|  | Tools to generate words lists and crack MD5 hashed security tokens from user data | 109 | 
|  | Tools for transforming and decrypting JSON Web Tokens using encryption algorithms | 18 | 
|  | Provides utilities and functions for creating, verifying, and decoding JSON Web Tokens (JWTs) using cryptographic algorithms. | 228 | 
|  | An extension for the Burp Suite web security testing tool that caches authentication tokens and injects them into subsequent requests. | 100 | 
|  | A toolkit for testing and analyzing JSON Web Tokens for security vulnerabilities | 5,501 | 
|  | A library implementing JSON Web Token and related security protocols for .NET development | 951 | 
|  | Detects known security vulnerabilities in Python dependencies and provides recommendations for remediation. | 1,758 | 
|  | Detects and analyzes command injection vulnerabilities in iRules written in the Tool Command Language (Tcl), allowing for identification of potential security flaws. | 5 | 
|  | Analyzes C/C++ source code for security vulnerabilities and reports potential flaws. | 498 | 
|  | A lightweight tool for detecting exploits and generating policies based on micro behaviors of malicious activities | 142 | 
|  | A tool designed to detect and collect sensitive information from malicious users by mimicking popular network services | 377 | 
|  | A tool for testing and cracking JSON Web Tokens (JWTs) using brute-force and dictionary attacks. | 770 | 
|  | An entropy-based tool to identify link vulnerabilities in software | 60 | 
|  | A tool designed to emulate browser behavior and detect vulnerabilities in web-based exploits | 163 | 
|  | A tool designed to guess the secret behind JWT tokens with weak secrets | 1,049 |