{"html":"<iframe src=\"https://hatenablog-parts.com/embed?url=https%3A%2F%2Fu3nerd.hatenablog.com%2Fentry%2F2024%2F03%2F01%2F082002\" title=\"Exploiting JWT to Account Takeover \u304b\u3089\u5b66\u3076 - The light of hope to the other side of the tunnel - Kotsu Kotsu To -\" class=\"embed-card embed-blogcard\" scrolling=\"no\" frameborder=\"0\" style=\"display: block; width: 100%; height: 190px; max-width: 500px; margin: 10px 0px;\"></iframe>","height":"190","title":"Exploiting JWT to Account Takeover \u304b\u3089\u5b66\u3076","url":"https://u3nerd.hatenablog.com/entry/2024/03/01/082002","version":"1.0","author_url":"https://blog.hatena.ne.jp/U3nerd/","blog_url":"https://u3nerd.hatenablog.com/","blog_title":"The light of hope to the other side of the tunnel - Kotsu Kotsu To -","image_url":"https://cdn-ak.f.st-hatena.com/images/fotolife/U/U3nerd/20240301/20240301081801.png","provider_url":"https://hatena.blog","published":"2024-03-01 08:20:02","provider_name":"Hatena Blog","author_name":"U3nerd","width":"100%","categories":["Bug Report"],"description":"\u30bd\u30fc\u30b9\uff1a medium.com \u8106\u5f31\u6027\uff1aJWT \u8a33\uff1a JWT\u3068\u306f\u4f55\u3067\u3059\u304b? \u5b89\u5168\u306b\u9001\u4fe1\u3059\u308b\u305f\u3081\u306b\u4f7f\u7528\u3055\u308c\u308b\u30c8\u30fc\u30af\u30f3\u3068\u5358\u7d14\u306b\u7406\u89e3\u3067\u304d\u307e\u3059 \u3053\u308c\u306f\u3001\u95a2\u4fc2\u8005\u9593\u3067\u60c5\u5831\u3092 JSON \u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u3068\u3057\u3066 \u306b\u3082\u4f7f\u7528\u3055\u308c\u307e\u3059 \u3002 \u3053\u308c\u306f\u8a8d\u53ef \u3002 \u73fe\u6642\u70b9\u3067\u77e5\u3063\u3066\u304a\u304f\u5fc5\u8981\u304c\u3042\u308b\u306e\u306f\u3053\u308c\u3060\u3051\u3067\u3059\u3002\u5b9a\u7fa9\u3092\u3055\u3089\u306b\u8a73\u3057\u304f\u77e5\u308a\u305f\u3044\u5834\u5408\u306b\u5099\u3048\u3066\u3001\u3053\u306e\u8a18\u4e8b\u306e\u8a73\u7d30\u3078\u306e\u30ea\u30f3\u30af\u3092\u63d0\u4f9b\u3057\u307e\u3059\u3002 JWT \u30c8\u30fc\u30af\u30f3\u306f\u3069\u306e\u3088\u3046\u306b\u898b\u3048\u308b\u306e\u3067\u3057\u3087\u3046\u304b? JWT \u306f\u6b21\u306e\u69cb\u9020\u306b\u5f93\u3044\u307e\u3059:- Base64(Header).Base64(Data).Base64(Signature). JWT are storage mechanism for dat\u2026","type":"rich"}