Sign inSign up

wheatstalk/jwt-fuzzer

By wheatstalk

•Updated almost 5 years ago

Image
0

938

wheatstalk/jwt-fuzzer repository overview

⁠JSON Web Token Fuzzer

jwt-fuzzer⁠ is a simple command line tool that creates multiple, potentially invalid, strings from an initial JSON Web Token⁠.

⁠Usage

docker run --rm -v "$PWD:/output" wheatstalk/jwt-fuzzer --jwt={JSON Web Token} --output out.json

This will produce out.json containing JSON that looks like:

[
    {
        "jwt": "HEADER.PAYLOAD.SIGNATURE", 
        "fuzzing_function": null
    }, 
    {
        "jwt": "HEADER.PAYLOAD.SIGNATURE", 
        "fuzzing_function": "header_alg_empty-0"
    }, 
    {
        "jwt": "HEADER.PAYLOAD.SIGNATURE", 
        "fuzzing_function": "header_alg_remove-0"
    },
    ... 60-something variations  
]

Tag summary

Content type

Image

Digest

Size

331.4 MB

Last updated

almost 5 years ago

docker pull wheatstalk/jwt-fuzzer