webmedium
Token Trust
hackerdna
Task: OAuth 2.0 authentication portal with exposed config endpoint. Solution: Extract client credentials from /api/v1/config, use client_credentials grant to mint admin JWT token, access /admin panel.
$ ls tags/ techniques/
jwtauthentication_bypasscredential_leakinformation_disclosuretoken_forgeryoauth2client_credentialsapi_misconfiguration
OAuth client_credentials grant abuseCredential extraction from exposed config endpointJWT admin token mintingrobots.txt endpoint enumerationAPI version discovery
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Create a free account with GitHub, then upgrade to Pro.
$ssh [email protected]