webmedium

Token Trust

hackerdna

Task: OAuth 2.0 authentication portal with exposed config endpoint. Solution: Extract client credentials from /api/v1/config, use client_credentials grant to mint admin JWT token, access /admin panel.

$ ls tags/ techniques/
OAuth client_credentials grant abuseCredential extraction from exposed config endpointJWT admin token mintingrobots.txt endpoint enumerationAPI version discovery

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Create a free account with GitHub, then upgrade to Pro.

$ssh [email protected]