Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

https://github.com/aramperes/jwtvoid

Utility to convert existing JWTs to the "none" algorithm
https://github.com/aramperes/jwtvoid

jwt jwt-token rust utility

Last synced: 29 days ago
JSON representation

Utility to convert existing JWTs to the "none" algorithm

Awesome Lists containing this project

README

        

# jwtvoid

[![Crates.io](https://img.shields.io/crates/v/jwtvoid.svg)](https://crates.io/crates/jwtvoid)
[![Crates.io](https://img.shields.io/github/v/tag/aramperes/jwtvoid?label=release)](https://github.com/aramperes/jwtvoid/releases/latest)

A utility to convert existing JWTs ([JSON Web Tokens](https://jwt.io)) to
the [`none` algorithm](https://auth0.com/blog/critical-vulnerabilities-in-json-web-token-libraries/).

This can be used to discover vulnerabilities in web services and JWT libraries.

## Installation

```
cargo install jwtvoid
```

## Usage

```sh
# One JWT
echo "eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJzdWIiOiIxMjM0NTY3ODkwIiwibmFtZSI6IkpvaG4gRG9lIiwiaWF0IjoxNTE2MjM5MDIyfQ.SflKxwRJSMeKKF2QT4fwpMeJf36POk6yJV_adQssw5c" | jwtvoid

# Multiple JWT
cat jwts.txt | jwtvoid
```

## License

MIT License: see `LICENSE` file for more information.