A practical walkthrough of three JWT forgery attacks involving unsigned tokens, weak secrets, and algorithm confusion.

Source: [HackerNoon](https://hackernoon.com/3-ways-jwts-get-forged-and-the-one-rule-that-stops-them-all?source=rss)

Sponsored