Jump to content

How do YOU protect against Session Exploits?


Goldeneye

Recommended Posts

All this time working on a project and it just hit me now that I haven't secured against session exploits of any kind.

I did some searching around prior to this and while I did manage to find a few snippets, I'm not really sure how well they work (if at all).

 

I know about session_regenerate_id(), but I'm not exactly sure where/when to use it.

 

So how do you protect against session exploits such as Session Hijacking, Session Fixation, and Session Poisoning.

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.