jwt-attacks

Community

Master JWT Security Testing

AuthorSnailSploit
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This Skill helps security professionals identify and exploit vulnerabilities in JSON Web Token (JWT) implementations, preventing unauthorized access and data breaches.

Core Features & Use Cases

  • Comprehensive Attack Vectors: Covers algorithm confusion, weak secret brute-forcing, header injection, and more.
  • Methodology & Tools: Provides step-by-step testing procedures and lists essential tools for thorough analysis.
  • Use Case: When testing a web application that uses JWT for authentication, use this Skill to systematically probe for weaknesses like alg: none or predictable secrets, potentially leading to account takeover.

Quick Start

Use the jwt-attacks skill to test the provided JWT token for common vulnerabilities.

Dependency Matrix

Required Modules

None required

Components

references

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: jwt-attacks
Download link: https://github.com/SnailSploit/Claude-Red/archive/main.zip#jwt-attacks

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.