Vulnerability Case Study: Session Hijacking
Maura A. van der Linden · Auerbach Publications eBooks · 2007
Session hijacking is when an attacker takes over a TCP session between two machines, quite often in midstream, and usually for the purposes of either stealing information or disrupting or inhibiting the flow of information. Because authentication only occurs at the start of a TCP session, an attacker can use captured, brute-force, or a reverse-engineered session ID to seize control of a legitimate user’s Web application session while the session is still in progress.