webPromedium

Lab 262 — PulseBoard — JWT Signature Bypass via Google Sign-In

hackadvisor

Task: PulseBoard collaborative workspace with Google Sign-In integration, JWT signature not verified. Solution: Forge JWT with alg:none targeting OAuth user to access privileged settings containing flag.

$ ls tags/ techniques/
privilege_escalationuser_enumerationjwt_none_algorithm_attackoauth_token_forgery

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Sign in with GitHub to continue. No email required.

$sign in

$ grep --similar

Similar writeups