RE: Session Authentication

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Mon, 2007-04-09 at 18:57 +0200, Peter Lauri wrote:
> > 
> > Cookies are old, so in the time they were introduced, today it is
> > possible to create and modify cookies with some good tools. These
> > tools are illegal,  but every cracker is 99% illegal right? But that
> > means i can't give you these tools to proof it, but it is possible.
> > 
> > Tijnema
> 
> [Peter Lauri - DWS Asia] 
> 
> Having these tools is probably not illegal. But using them illegally is
> illegal :) Could you send me some more info "off-list" about this. Knowing
> how to use these tools will probably help me making my sites more secure, am
> I not right? :)

You don't need tools. Just go find where your browser stores them.
Alternatively, enable cookies when using Curl, then you have them and
can mod them on the fly as you see fit. Hasn't anyone here had a boring
day (yeeeeeears ago) when they created an auto vote bot for some stupid
poll? >:B Cookies are only slightly more secure than trans sid PHPSESSID
since it's less likely the ignorant masses will post their cookie
contents to a forum :)

Cheers,
Rob.
-- 
.------------------------------------------------------------.
| InterJinn Application Framework - http://www.interjinn.com |
:------------------------------------------------------------:
| An application and templating framework for PHP. Boasting  |
| a powerful, scalable system for accessing system services  |
| such as forms, properties, sessions, and caches. InterJinn |
| also provides an extremely flexible architecture for       |
| creating re-usable components quickly and easily.          |
`------------------------------------------------------------'

-- 
PHP General Mailing List (http://www.php.net/)
To unsubscribe, visit: http://www.php.net/unsub.php


[Index of Archives]     [PHP Home]     [Apache Users]     [PHP on Windows]     [Kernel Newbies]     [PHP Install]     [PHP Classes]     [Pear]     [Postgresql]     [Postgresql PHP]     [PHP on Windows]     [PHP Database Programming]     [PHP SOAP]

  Powered by Linux