jwt-hack
jwt-hack copied to clipboard
Spec of feature / options
기능
- [ ] Show JWT info => e.g convert expire time
- [x] Signature secret Bruteforce
- [x] Signature secret Dictionary attack
- [x] None algorithm testing
- [ ] Key confusion
모드
$ jwt-hack
commands & options
$ jwt-hack encode
--secret=thisissecretkey
$ jwt-hack decode
$ jwt-hack crack
--wordlist=file.lst
--lmin=1
--lmax=10
--chars=abcdefg12345
--concurrency=200
--power (use your all cpu)
$ jwt-hack payloads
--cert=./file.pem