You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This report demonstrates how a weak JWT secret was cracked using Hashcat, enabling privilege escalation.
Tools Used: Postman, Burp Suite, Hashcat Flag Found: ✅
About
DVAPI (Damn Vulnerable API) is a test environment replicating vulnerable APIs based on the OWASP API Security Top 10. It allows hands-on experience with real-world attack vectors like property-level authorization flaws, token issues, and more. And this repository is showcasing Vapt work on DVAPI Vulnerabilities.