Hi ,
I dunno if this was the right forum to post these
questions.
But here goes...
In a web based application, lets say a client browser
has logged in (using UserName and password) to a
server application. So lets say the web server has
assigned a sessionId to the client browser. Now, are
there any programs (malicious ones) which snoop on
connections between a client and server to look for
such sessionId and use that to break into systems? Can
this please be answered with some explanation.
Can anyone please suggest some links of where i can
find related info.
Thanx,
-hemant
__________________________________
Do you Yahoo!?
Yahoo! SiteBuilder - Free, easy-to-use web site design software
http://sitebuilder.yahoo.com