jwt-heartbreaker Logo

jwt-heartbreaker

0
Free
Visit Website

The Burp extension to check JWT (JSON Web Tokens) for using keys from known from public sources. This extension is designed to help security researchers and penetration testers identify potential vulnerabilities in JWT-based applications. It allows you to scan for JWT tokens in HTTP requests and responses, and then analyze them for potential weaknesses. This can help you identify potential vulnerabilities, such as the use of weak keys or predictable salts. This extension is a powerful tool for identifying potential security issues in JWT-based applications. It is a must-have tool for any security researcher or penetration tester working with JWT-based applications.

FEATURES

ALTERNATIVES

A Python script that converts shellcode into a PE32 or PE32+ file.

Discontinued project for file-less persistence, attacks, and anti-forensic capabilities on Windows 7 32-bit systems.

A debugger tool for reverse engineers, crackers, and security analysts, with a user-friendly debugging UI and custom agent support.

Interactive malware hunting service with live access to the heart of an incident.

A write-up of the reverse engineering challenge from the 2019 BambooFox CTF competition

FSF is a modular, recursive file scanning solution that enables analysts to extend the utility of Yara signatures and define actionable intelligence within a file.

Ropper is a tool for analyzing binary files and searching for gadgets to build rop chains for different architectures.

A library of PHP unserialize() payloads and a tool to generate them.