Session Hijacking
Session Hijacking refers to the exploitation of a valid computer session via theft of a cookie or session key, used to gain unauthorized access to information or services. When an attacker is able to steal the cookie containing session access data, (s)he can make requests as if (s)he were the actual user. If a persistent cookie is stolen, then the impersonation can continue for a prolonged period of time.
Source: FEMA
(TEEX)
Session Hijacking refers to the exploitation of a valid computer session via theft of a cookie or session key, used to gain unauthorized access to information or services. When an attacker is able to steal the cookie containing session access data, (s)he can make requests as if (s)he were the actual user. If a persistent cookie is stolen, then the impersonation can continue for a prolonged period of time.
Source: FEMA
(TEEX)
Comments
Post a Comment