• DocumentCode
    1519404
  • Title

    Session management vulnerabilities in today´s web

  • Author

    Vlsaggio, Corrado Aaron ; Blasio, Lorenzo Convertito

  • Volume
    8
  • Issue
    5
  • fYear
    2010
  • Firstpage
    48
  • Lastpage
    56
  • Abstract
    Many cyberattacks exploit session management vulnerabilities that allow attackers to be recognized as valid website users. This article describes Web application design flaws that could be exploited for session management attacks and discusses these flaws´ current prevalence.
  • Keywords
    Internet; Web design; security of data; Web application design flaws; cyberattacks; session management attacks; session management vulnerabilities; valid Website users; Authentication; Computer crime; Computer security; Content management; Engineering management; Identity management systems; Navigation; Privacy; Technology management; Web server; Web application security; security and privacy; session management;
  • fLanguage
    English
  • Journal_Title
    Security & Privacy, IEEE
  • Publisher
    ieee
  • ISSN
    1540-7993
  • Type

    jour

  • DOI
    10.1109/MSP.2010.114
  • Filename
    5487488