Session hijacking is the act of taking control of a user session after successfully obtaining or generating an authentication session ID. Session hijacking involves an attacker using captured, brute forced or reverse-engineered session IDs to seize control of a legitimate user's Web application session while that session is still in progress.
In this whitepapers I will be going into details on how it is been done.
Whitepapers: Web Application Session Hijacking
Written By Unknown on Tuesday, 6 September 2011 | 08:42
Labels:
Session hijacking
,
white papers
Post a Comment