|
|||||||||||
|
Re: Hijacking URL Encoded Session IDs using Referer Logs
From: ONEILL David J <David.J.Oneill(at)state.or.us>
Date: Mon Nov 25 2002 - 10:39:04 EST
David J. O'Neill
If you can post an interesting link to a site, you can hijack the sessions of users with cookies disabled, and no one would be the wiser. Also a good reason to use HTTPS. Bob On Monday, November 25, 2002, at 07:48 AM, zeno wrote: > Not to my knowledge. I guess the question would be why would you store
Received on Mon Nov 25 14:19:27 2002This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:07:44 EDT |
||||||||||
|
|||||||||||