1. For example, without SSL, If I capture my local LAN packet and
scanned the SESSION ID, is it possible to hijack the session?
2. So any recommendation for web apps session handling without SSL?
Thanks.
scanned the SESSION ID, is it possible to hijack the session?
2. So any recommendation for web apps session handling without SSL?
Thanks.
Comment