Top 10 Free Web-Mail Security Test Using Session Hijacking

Preecha Noiumkar -, Thawatchai Chomsiri · 2008

This research presents the results of the experimental about security level of the top 10 popular free Web-mail. These 10 Web mails were hacked by means of session hijacking. The researcher conducted this experiment on the LAN system and used information capturing technique to gain cookies and session ID inside cookies. Then, hijacking was conducted by using two hijacking methods. The first method, which was common and easy to conduct, used only one cookie. The second method, which was not very popular but offered high penetrating power, used all cookies (cookies cloned by SideJacking tools). The results show that the Web mails with the height security level are AOL Mail, GMX Mail and Yahoo Mail; and the Web mails with the low security level are Gmail, Inbox Mail and Hotmail.

Read the paper · More papers on PaperTik