Course Outline
Introduction
- JWT structure overview
- Common use cases for JWT
JWT Validation
- Symmetric token signatures
- Asymmetric token signatures
- Token validation methods
- Claims validation
Compromised JWTs
- Strategies for handling stolen JWTs
- JWT storage mechanisms
- JWT invalidation procedures
Cryptographic Key Management
- Overview of secret keys
- Embedding public keys
- Embedding a URL that contains the key
JWT Security Flaws
- Brute force attack vectors
- Altering the algorithm from RS256 to HS256
- The 'None' algorithm vulnerability
Summary and Future Directions
Requirements
- Fundamental understanding of web services
Target Audience
- Software Developers
Testimonials (5)
The lessons was very interactive and the excersices was good practical
Heino - NWK Limited
Course - Laravel and Vue.js
I am glad we can get the recordings, slides and files zipped to us so we can always reference back to them when needed. David explained concepts clearly and was able to answer questions that we had. He was very knowledgeable.
Renee Chan - Mackenzie Investments
Course - Vue.js
practice exercises
Mateusz - DPDgroup IT Solutions sp. z o.o.
Course - React Native for iOS and Android
The vue.js is something that I never worked with and the presentation clarified few of my doubts. But again, online courses are not efficient in acquiring knowledge.
Bogdan Stoica - EMAG IT Research S.R.L
Course - Advanced Vue.js
His ability to explain complex concept in simpler terms. Giving an overview of how everything ties together and how we can best apply these in our work scenarios