Загрузка...

JWT Security Mistakes in Node.js (React Native Demo) #short

Backend: https://github.com/jmejiamu/idor-example
Front end: https://github.com/jmejiamu/securing-rn-app
In this video, I demonstrate common JWT security mistakes in a real-world setup using React Native + Node/Express (TypeScript).

We start with a vulnerable backend configuration and show how a weak secret and improper verification can allow privilege escalation. Then we fix the issue by properly validating tokens and applying secure configuration.

🔐 Topics covered:

- Weak JWT secrets
- Forged tokens
- Missing expiration
- Improper token verification
- Why JWT is signed, not encrypted
- How to secure JWT properly

This is part of my Mobile App Security Series, where we explore real vulnerabilities affecting modern mobile apps.

Tech stack:
React Native
Node.js
Express
TypeScript
JSON Web Tokens

JWT issues fall under the OWASP Top 10 (Broken Access Control & Identification and Authentication Failures).

#ReactNative #NodeJS #Express #TypeScript #APISecurity #JWT #OWASP #MobileSecurity #BackendDevelopment #shorts

Видео JWT Security Mistakes in Node.js (React Native Demo) #short канала The Zero One Dev
Яндекс.Метрика
Все заметки Новая заметка Страницу в заметки
Страницу в закладки Мои закладки
На информационно-развлекательном портале SALDA.WS применяются cookie-файлы. Нажимая кнопку Принять, вы подтверждаете свое согласие на их использование.
О CookiesНапомнить позжеПринять