SDF Chatter
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
0xCBE@infosec.pub to Red Team@infosec.pubEnglish · 2 years ago

JWT authentication bypass via X-HTTP-Method-Override header

github.com

external-link
message-square
0
fedilink
1
external-link

JWT authentication bypass via X-HTTP-Method-Override header

github.com

0xCBE@infosec.pub to Red Team@infosec.pubEnglish · 2 years ago
message-square
0
fedilink
## Summary ESPv2 contains an authentication bypass vulnerability. API clients can craft a malicious `X-HTTP-Method-Override` header value to bypass JWT authentication in specific cases. ## Ba...
alert-triangle
You must log in or register to comment.

Red Team@infosec.pub

redteam@infosec.pub

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !redteam@infosec.pub

Red Teamers are here to break into your stuff before the bad guys do, and help you secure it. This is a place to discuss novel research, pentest tools and techniques, physical security and post memes about the Blue Team.

Join us! We have cookies. Blue Team’s cookies. >:)

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1 user / day
  • 1 user / week
  • 1 user / month
  • 1 user / 6 months
  • 1 local subscriber
  • 0 subscribers
  • 12 Posts
  • 4 Comments
  • Modlog
  • mods:
  • administrator@infosec.pub
  • BE: 0.19.8
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org