March 30, 2010, 3:02PM

PHP Session IDs Can Be Guessed

Security expert Andreas Bogk warns that, despite recent PHP improvements, the session IDs of users who are logged into PHP applications remain guessable. Upon close examination, the alleged improvements display frightening weaknesses. Read the full article. [The H Security]


Commenting on this Article is closed.

 

Copyright © 2012 threatpost.com | Terms of Service | Privacy