June 2024
Intermediate to advanced
336 pages
8h
English
In this chapter
In chapter 8, we looked at how attackers try to steal credentials from your users. If that strategy isn’t feasible, the next thing an attacker will try is accessing a victim’s account after they log in.
The continued authenticated interaction between a browser and a web server—when a user visits various pages in your web application and the server recognizes who they are—is called a session. Session hijacking is the act of stealing a user’s identity while ...
Read now
Unlock full access