Salam and Hi to all I haven't seen anyone mentioning this topic so maybe some of you know about it or haven't heard about it yet!!..
its called Cookie Jacking.. check out the website https://sites.google.com/site/tentacoloviola/cookiejacking some might argue that it need social engineering aspects but hey most of the biggest threats or news we have heard of incidents involved the human element.. except the recent attacks on Sony, RSA, US contracts (Lockheed Martin, L3).. which somehow also the human element for not updating their system.. ahem ahem
_______________________________________________ OWASP-Malaysia mailing list [email protected] https://lists.owasp.org/mailman/listinfo/owasp-malaysia OWASP Malaysia Wiki http://www.owasp.my OWASP Malaysia Facebook http://www.facebook.com/OWASP.Malaysia OWASP Malaysia Twitter #owaspmy http://www.twitter.com/owaspmy

