Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Understanding Session Fixation Risks in Web Applications

General Esm H500
Web servers are employing techniques for protecting session IDs from three classes of attacks: interception, prediction, and brute force attacks. This paper reveals a fourth class of session attacks against session IDs: session fixation attacks.

The article located at Session Fixation Vulnerability in Web-based Applications is no longer available.

Your message here