Get in Touch

Course Outline

Introduction

  • JWT structure overview
  • Common use cases for JWT

JWT Validation

  • Symmetric token signatures
  • Asymmetric token signatures
  • Token validation methods
  • Claims validation

Compromised JWTs

  • Strategies for handling stolen JWTs
  • JWT storage mechanisms
  • JWT invalidation procedures

Cryptographic Key Management

  • Overview of secret keys
  • Embedding public keys
  • Embedding a URL that contains the key

JWT Security Flaws

  • Brute force attack vectors
  • Altering the algorithm from RS256 to HS256
  • The 'None' algorithm vulnerability

Summary and Future Directions

Requirements

  • Fundamental understanding of web services

Target Audience

  • Software Developers
 7 Hours

Number of participants


Price per participant

Testimonials (5)

Upcoming Courses

Related Categories