Level: Easy Points: 10 Type: Daily Challenge
Lab Interface
After login, we get JWT as:
edit the algo to none id to 1 role to admin
algo
none
id
1
role
admin
Then send the request, we now have access to the admin panel
To get flag: GET request to /api/admin/flag
Last updated 26 days ago
eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJpZCI6NCwidXNlcm5hbWUiOiJzdXNoaWwiLCJyb2xlIjoidXNlciIsImlhdCI6MTc3MjgxMzY1M30.DlQBKe4708GVJ1jMIkpWTStnsIcxDaZXc4WJMnzN9hU