Re: Session Authentication

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On 4/9/07, Stut <stuttle@xxxxxxxxx> wrote:
Peter Lauri wrote:
>> Cookies are old, so in the time they were introduced, today it is
>> possible to create and modify cookies with some good tools. These
>> tools are illegal,  but every cracker is 99% illegal right? But that
>> means i can't give you these tools to proof it, but it is possible.
>>
>> Tijnema
>
> [Peter Lauri - DWS Asia]
>
> Having these tools is probably not illegal. But using them illegally is
> illegal :) Could you send me some more info "off-list" about this. Knowing
> how to use these tools will probably help me making my sites more secure, am
> I not right? :)

Cookies are HTTP headers, nothing more, nothing less. The minimum "tool"
you need is telnet. If you're writing web applications and don't know
that, please take the time to read the HTTP spec, and then the cookie
spec. Google for them.

-Stut

Encrypted stuff maybe? Faking cookies can be done without any tools,
but were talking about editing here...


Tijnema


--
PHP General Mailing List (http://www.php.net/)
To unsubscribe, visit: http://www.php.net/unsub.php


[Index of Archives]     [PHP Home]     [Apache Users]     [PHP on Windows]     [Kernel Newbies]     [PHP Install]     [PHP Classes]     [Pear]     [Postgresql]     [Postgresql PHP]     [PHP on Windows]     [PHP Database Programming]     [PHP SOAP]

  Powered by Linux