language-icon Old Web
English
Sign In

Session fixation

In computer network security, session fixation attacks attempt to exploit the vulnerability of a system that allows one person to fixate (find or set) another person's session identifier. Most session fixation attacks are web based, and most rely on session identifiers being accepted from URLs (query string) or POST data. In computer network security, session fixation attacks attempt to exploit the vulnerability of a system that allows one person to fixate (find or set) another person's session identifier. Most session fixation attacks are web based, and most rely on session identifiers being accepted from URLs (query string) or POST data. Alice has an account at the bank http://unsafe.example.com/ Mallory intends to target Alice's money from her bank.

[ "Session ID" ]
Parent Topic
Child Topic
    No Parent Topic