Course Outline
Introduction
- Overview of JWT structure
- Common use cases for JWT
JWT Validation
- Symmetric token signature
- Asymmetric token signature
- Validating tokens
- Validating claims
Addressing Stolen JWTs
- Strategies for handling stolen JWTs
- JWT storage practices
- Invalidating JWTs
Managing Cryptographic Keys
- Overview of secret keys
- Embedding the public key
- Embedding a URL that contains the key
JWT Vulnerabilities and Hacking Techniques
- Brute force attacks
- Altering the algorithm from RS256 to HS256
- The 'None' algorithm approach
Summary and Next Steps
Requirements
- Fundamental understanding of web services
Target Audience
- Developers
Testimonials (5)
The lessons was very interactive and the excersices was good practical
Heino - NWK Limited
Course - Laravel and Vue.js
I am glad we can get the recordings, slides and files zipped to us so we can always reference back to them when needed. David explained concepts clearly and was able to answer questions that we had. He was very knowledgeable.
Renee Chan - Mackenzie Investments
Course - Vue.js
practice exercises
Mateusz - DPDgroup IT Solutions sp. z o.o.
Course - React Native for iOS and Android
The vue.js is something that I never worked with and the presentation clarified few of my doubts. But again, online courses are not efficient in acquiring knowledge.
Bogdan Stoica - EMAG IT Research S.R.L
Course - Advanced Vue.js
His ability to explain complex concept in simpler terms. Giving an overview of how everything ties together and how we can best apply these in our work scenarios