July 1, 2004

Cookie path best practice

LogError writes "Cookies are often used to maintain a Session ID (SID), through which an individual user can be identified throughout their interaction with a site. If an attacker can use a mechanism to gain access to the SID, then potentially they can incorporate it within their own session to successfully assume the users identity."

Category:

  • Security
Click Here!