The Web Application Hacker’s Handbook Discovering and Exploiting Security Flaws


Chapter 7  ■ Attacking Session Management



Download 5,76 Mb.
Pdf ko'rish
bet384/875
Sana01.01.2022
Hajmi5,76 Mb.
#293004
1   ...   380   381   382   383   384   385   386   387   ...   875
Bog'liq
3794 1008 4334

Chapter 7 



Attacking Session Management



213

70779c07.qxd:WileyRed  9/14/07  3:13 PM  Page 213




most important lesson to draw from this topic is to be patient and determined.

Very many session management mechanisms that appear to be robust on first

inspection can be found wanting when analyzed closely. Deciphering the

method which an application uses to generate its sequence of seemingly ran-

dom tokens may take time and ingenuity. But given the reward, this is usually

an investment well worth making. 



Questions

Answers can be found at 

www.wiley.com/go/webhacker.

1. You log in to an application and the server sets the following cookie:

Set-cookie: sessid=amltMjM6MTI0MToxMTk0ODcwODYz;

An hour later, you log in again and receive the following:

Set-cookie: sessid=amltMjM6MTI0MToxMTk0ODc1MTMy;

What can you deduce about these cookies?

2. An application employs six-character alphanumeric session tokens and

five-character alphanumeric passwords. Both are randomly generated

according to an unpredictable algorithm. Which of these is likely to be

the most worthwhile target for a brute force guessing attack? List all of

the different factors that may be relevant to your decision.

3. You log in to an application at the following URL:

https://foo.wahh-app.com/login/home.php

and the server sets the following cookie:

Set-cookie: sessionId=1498172056438227; domain=foo.wahh-

app.com; path=/login; HttpOnly;

You then visit a range of other URLs. Which of the following will your

browser submit the 

sessionId

cookie to? (Select all that apply.)

(a)

https://foo.wahh-app.com/login/myaccount.php



(b)

https://bar.wahh-app.com/login

(c)

https://staging.foo.wahh-app.com/login/home.php



(d)

http://foo.wahh-app.com/login/myaccount.php

(e)

http://foo.wahh-app.com/logintest/login.php



(f)

https://foo.wahh-app.com/logout

(g)

https://wahh-app.com/login/



(h)

https://xfoo.wahh-app.com/login/myaccount.php




Download 5,76 Mb.

Do'stlaringiz bilan baham:
1   ...   380   381   382   383   384   385   386   387   ...   875




Ma'lumotlar bazasi mualliflik huquqi bilan himoyalangan ©hozir.org 2024
ma'muriyatiga murojaat qiling

kiriting | ro'yxatdan o'tish
    Bosh sahifa
юртда тантана
Боғда битган
Бугун юртда
Эшитганлар жилманглар
Эшитмадим деманглар
битган бодомлар
Yangiariq tumani
qitish marakazi
Raqamli texnologiyalar
ilishida muhokamadan
tasdiqqa tavsiya
tavsiya etilgan
iqtisodiyot kafedrasi
steiermarkischen landesregierung
asarlaringizni yuboring
o'zingizning asarlaringizni
Iltimos faqat
faqat o'zingizning
steierm rkischen
landesregierung fachabteilung
rkischen landesregierung
hamshira loyihasi
loyihasi mavsum
faolyatining oqibatlari
asosiy adabiyotlar
fakulteti ahborot
ahborot havfsizligi
havfsizligi kafedrasi
fanidan bo’yicha
fakulteti iqtisodiyot
boshqaruv fakulteti
chiqarishda boshqaruv
ishlab chiqarishda
iqtisodiyot fakultet
multiservis tarmoqlari
fanidan asosiy
Uzbek fanidan
mavzulari potok
asosidagi multiservis
'aliyyil a'ziym
billahil 'aliyyil
illaa billahil
quvvata illaa
falah' deganida
Kompyuter savodxonligi
bo’yicha mustaqil
'alal falah'
Hayya 'alal
'alas soloh
Hayya 'alas
mavsum boyicha


yuklab olish