Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Web Application Security
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
RE: Whitepaper "SESSION RIDING - A Widespread Vulnerability in Today's Web Applications" Dec 16 2004 10:40PM
Yvan G.J. Boily (yboily seccuris com)
This name for the issue is misleading; this is a state management
issue combined with a session management issue.

Although there is an attempt to separate this type of an attack,
it is still a session hijacking attack, even though the attacker
is taking a different approach; the attacker still m...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus