what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 1 of 1 RSS Feed

Files

Twitter.com Impossible Secure Session
Posted Apr 29, 2010
Authored by Chris Palmer | Site isecpartners.com

It is impossible to maintain a secure session with Twitter, for multiple reasons. Additionally, once a session has been hijacked, it is possible for the attacker to maintain control over the account (not just the session) indefinitely, unless the user changes their password. This is because the session cookie has the same lifetime as the password.

tags | advisory
SHA-256 | 33ce90a17e72942d80262b42b39d4448a3e3b1ef746c48a5ce44c25d9b3ef5ef
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close