Penetration Testing with Kali Linux
PWK - Copyright © 2023 OffSec Services Limited. All rights reserved.
230
We were able to correctly sign in and retrieve a JWT
357
authentication token. To obtain tangible
proof that
we are an administrative user, we should use this token
to change the admin user
password.
We can attempt this by forging a POST request that targets the password API.
kali@kali:~$
Yüklə
Dostları ilə paylaş: