Back to directory
WRITEUP #4773

Playing with JSON Web Tokens for Fun and Profit

AI / LLMPassword resetEmail verification bypass
by@MeetAn0nym0us(Muhammad Qasim Munir)
Program
-
Published
Apr 4, 2020
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://blog.securitybreached.org/2020/04/04/playing-with-json-web-tokens-for-fun-and-profit/
RELATED WRITEUPS
Unmasking Harmful Content in a Medical Chatbot: A Red Team Perspective
AI / LLMAI
Revival Hijack – PyPI hijack technique exploited in the wild, puts 22K packages at risk
AI / LLMCI/CD
Microsoft Copilot: From Prompt Injection to Exfiltration of Personal Information
AI / LLMAI
Google AI Studio: LLM-Powered Data Exfiltration Hits Again! Quickly Fixed.
AI / LLMAI
From MLOps to MLOops: Exposing the Attack Surface of Machine Learning Platforms
AI / LLMAI

Built with ❤️ by Shubham Rawat