News Feed
Jobs Feed
Sections

Recent Jobs

News Archive
DevShed:
Sessions and Cookies
June 07, 2007 @ 13:15:43

DevShed has a new book excerpt from a good standby security resource from O'Reilly - Chris Shiflett's "Essential PHP Security". This time, they focus on the chapter talking about sessions and cookie security.

This chapter discusses sessions and the inherent risks associated with stateful web applications. You will first learn the fundamentals of state, cookies, and sessions; then I will discuss several concerns - cookie theft, exposed session data, session fixation, and session hijacking-along with practices that you can employ to help prevent them.

The chapter talks about how the statelessness of HTTP causes problems, how cookies can be stolen because of it and what kinds of things you can do to keep you and your users safe (like session fixation).

0 comments voice your opinion now!
session cookie security oreilly book excerpt session cookie security oreilly book excerpt



Similar Posts

PHPBuilder: Pro PHP Security / Preventing SQL Injection, Part 2

PHP Security Blog: Month of PHP bugs

php|architect: Announcing our new Magento book

Marc Gear's Blog: Zend PHP5 Certification study guide review

php|architect: Application-level Logging with the Zend Framework


Community Events







Don't see your event here?
Let us know!


cakephp database zend releases security example PEAR code book package application release developer mysql ajax framework PHP5 job conference zendframework

All content copyright, 2008 PHPDeveloper.org :: info@phpdeveloper.org - Powered by the Solar PHP Framework