Scene Image

Token Trust

I don't need your password. I just need access.

In Token Trust, you are a skilled hacker tasked with infiltrating a package management system to gain access to vital information. PyPI package maintainers have adopted a new, more secure publishing method called Trusted Publishing, which uses the OpenID Connect standard to exchange short-lived identity tokens between a trusted third-party service and PyPI. To achieve your objective, you must navigate through the token authentication system and use your hacking expertise to trick the system into giving you valuable insights.