Get a Pentest and security assessment of your IT network.

News

Web Application Attacks Types, Impact & Mitigation Part-2

The Session Fixation attack fixes an established session on the victims browser, so the attack starts before the user logs in. An attacker can trick a legitimate user to follow a link that has a session ID set into it. If the user follows the link then the attacker will be sent to the application in the cookie. After this attacker can hijack the session and compromise the account of the legitimate user with the help of the fixed session. The application must perform validation of all headers, cookies, query strings, form fields, and hidden fields (i.e., all parameters)”]

Source: https://gbhackers.com/web-application-attacks-part-2/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks