Certified Ethical Hacker (CEH) Practice Question

During a web-app assessment, you intercept a bearer JWT taken from an Authorization header. You change the token's alg value from HS256 to none, delete the signature segment, and resend the request. The application still recognizes you as an administrator. Which specific session-management weakness should you document in your report?

  • The application neglects to enforce the exp claim, letting expired tokens remain valid

  • The implementation accepts the none algorithm, bypassing signature verification altogether

  • The server incorrectly treats an RS256 public key as an HS256 shared secret during verification

  • The JWT uses a weak shared secret that can be brute-forced offline

Certified Ethical Hacker (CEH)
Web Application Hacking
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot