Skip to Content
ASP.NET Core Security
book

ASP.NET Core Security

by Christian Wenz
July 2022
Beginner to intermediate
368 pages
9h 48m
English
Manning Publications
Content preview from ASP.NET Core Security

3 Attacking session management

This chapter covers

  • Understanding how session management works
  • Learning how hackers can steal session ID data
  • Determining an attack has occurred and how to prevent it
  • Protecting session (and other) cookies
  • Using HTTPS routinely and consistently

In late 2010, software developer Eric Butler released a Firefox extension called Firesheep. It worked like this: you would connect to a public Wi-Fi network, like at a train station or a coffee shop. When installed and active, the extension would continuously analyze (unencrypted) data in the current wireless network. If someone else in the same network was logged into one of a select number of sites, a window popped up, prompting you to go to that site, as that other person. ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Pro ASP.NET Core Identity: Under the Hood with Authentication and Authorization in ASP.NET Core 5 and 6 Applications

Pro ASP.NET Core Identity: Under the Hood with Authentication and Authorization in ASP.NET Core 5 and 6 Applications

Adam Freeman

Publisher Resources

ISBN: 9781633439986Publisher SupportOtherPublisher WebsiteSupplemental ContentErrata PagePurchase Link