Skip to content

arnabchoudhury404/DVAPI-Vapt-Report

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 
 
 

Repository files navigation

API2:2023 – Broken Authentication

This report demonstrates how a weak JWT secret was cracked using Hashcat, enabling privilege escalation.

Tools Used: Postman, Burp Suite, Hashcat
Flag Found:

About

DVAPI (Damn Vulnerable API) is a test environment replicating vulnerable APIs based on the OWASP API Security Top 10. It allows hands-on experience with real-world attack vectors like property-level authorization flaws, token issues, and more. And this repository is showcasing Vapt work on DVAPI Vulnerabilities.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors