Session Management

From Guidance Share

Revision as of 20:45, 1 December 2007; JD (Talk | contribs)
(diff) ←Older revision | Current revision | Newer revision→ (diff)
Jump to: navigation, search

Contents

Description

Session management for Web applications is an application layer responsibility. Session security is critical to the overall security of the application.


Vulnerabilities

Attacks

  • Session Hijacking
  • Session Replay
  • Man in the Middle Attacks


Countermeasures

Countermeasures to prevent Session Management issues include:

Personal tools