Session Security Guide
Introduction to Sessions
Stateless HTTP
Session Identifiers (Session IDs)
Session ID Security Best Practices
Common Session Attacks
Session Hijacking
Session Fixation
Cross-Site Scripting (XSS) - Session ID Theft
Cross-Site Request Forgery (CSRF)
Open Redirects
/etc/hosts File Manipulation for Lab Environments
Adding Host Entries
Essential Security Tools
Nmap - Network Scanning
Gobuster - Directory Brute Forcing
SQLmap - SQL Injection Detection
Nikto - Web Server Scanning
Burp Suite
Security Best Practices
Last updated