Skip to content

Commit

Permalink
Update README
Browse files Browse the repository at this point in the history
  • Loading branch information
v-p-b authored Oct 2, 2022
1 parent 20614bf commit dcb804c
Showing 1 changed file with 2 additions and 0 deletions.
2 changes: 2 additions & 0 deletions README.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,3 +8,5 @@ The repository contains:
* Proof-of-Concept code to exploit the [CVE-2017-11424](https://snyk.io/vuln/SNYK-PYTHON-PYJWT-40693) key confusion vulnerability in pyJWT, without knowing the public key of the target

Additional reading: [Abusing JWT Public Keys Without the Public Key](https://blog.silentsignal.eu/2021/02/08/abusing-jwt-public-keys-without-the-public-key/)

__You probably want to use the Docker image provided in the _standalone_ directory.__

0 comments on commit dcb804c

Please sign in to comment.