Удален по просьбе правообладателя
  1. Урок 1.00:02:28
    Overview
  2. Урок 2.00:01:44
    What Is Session Hijacking?
  3. Урок 3.00:02:59
    Types of Session Hijacking
  4. Урок 4.00:03:41
    Attack Vectors
  5. Урок 5.00:03:27
    The Impact of Session Hijacking
  6. Урок 6.00:02:45
    Session Hijacking and the OWASP Top 10
  7. Урок 7.00:01:31
    Summary
  8. Урок 8.00:01:44
    Overview
  9. Урок 9.00:02:53
    The Stateless Nature of HTTP
  10. Урок 10.00:05:46
    Persisting State Over HTTP
  11. Урок 11.00:08:50
    Session Persistence in Cookies
  12. Урок 12.00:06:34
    Session Persistence in the URL
  13. Урок 13.00:03:22
    Session Persistence in Hidden Form Fields
  14. Урок 14.00:02:37
    Summary
  15. Урок 15.00:02:19
    Overview
  16. Урок 16.00:09:51
    Hijacking Cookies with Cross Site Scripting
  17. Урок 17.00:03:48
    Exposed Cookie Based Session IDs in Logs
  18. Урок 18.00:02:52
    Exposed URL Based Session IDs in Logs
  19. Урок 19.00:03:57
    Leaking URL Persisted Sessions in the Referrer
  20. Урок 20.00:05:33
    Session Sniffing
  21. Урок 21.00:06:41
    Session Fixation
  22. Урок 22.00:04:06
    Brute Forcing Session IDs
  23. Урок 23.00:05:11
    Session Donation
  24. Урок 24.00:03:04
    Summary
  25. Урок 25.00:03:05
    Overview
  26. Урок 26.00:09:00
    Understanding TCP
  27. Урок 27.00:05:23
    Reviewing the Three-way Handshake in Wireshark
  28. Урок 28.00:04:31
    Generation and Predictability of TCP Sequence Numbers
  29. Урок 29.00:02:29
    Blind Hijacking
  30. Урок 30.00:01:58
    Man in the Middle Session Sniffing
  31. Урок 31.00:01:48
    IP Spoofing
  32. Урок 32.00:02:20
    UDP Hijacking
  33. Урок 33.00:02:48
    Man in the Browser Attacks
  34. Урок 34.00:01:27
    Network Level Session Hijacking in the Wild
  35. Урок 35.00:02:09
    Summary
  36. Урок 36.00:02:13
    Overview
  37. Урок 37.00:03:19
    Use Strong Session IDs
  38. Урок 38.00:02:40
    Keep Session IDs Out of the URL
  39. Урок 39.00:06:34
    Don’t Reuse Session ID for Auth
  40. Урок 40.00:04:04
    Always Flag Session ID Cookies as HTTP Only
  41. Урок 41.00:04:43
    Use Transport Layer Security
  42. Урок 42.00:05:39
    Always Flag Session ID Cookies as Secure
  43. Урок 43.00:05:59
    Session Expiration and Using Session Cookies
  44. Урок 44.00:03:10
    Consider Disabling Sliding Sessions
  45. Урок 45.00:02:30
    Encourage Users to Log Out
  46. Урок 46.00:01:54
    Re-authenticate Before Key Actions
  47. Урок 47.00:03:16
    Summary
  48. Урок 48.00:02:00
    Overview
  49. Урок 49.00:05:04
    Manipulating Session IDs with OWASP ZAP
  50. Урок 50.00:09:48
    Testing Session Token Strength with Burp Suite
  51. Урок 51.00:04:39
    Dynamic Analysis Testing with NetSparker
  52. Урок 52.00:03:53
    Other Tools
  53. Урок 53.00:02:05
    Summary