Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Web Application Session Strength

Black Hat via YouTube

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore web application security in this Black Hat USA 2004 conference talk focusing on session strength. Delve into various aspects of session management, including session states, tokens, and potential threats. Examine key spaces, password security, and session attacks. Learn about token creation, dynamic tokens, and user number tokens. Investigate the "Lucky Monkey" concept and its values. Analyze HTTP requests, confidentiality, and encoding techniques. Gain insights into session management best practices, phase space analysis, and key management. Discover how different web servers and programming languages like PHP and Java handle session tokens and cookies. Understand the importance of session expiration and modeling user behavior. Conclude with a comprehensive overview of data security in web applications.

Syllabus

Intro
Not like Syntax Errors
Windows XP
Session State
Session Tokens
What are the threats
Key spaces
Passwords
Session Attacks
Token Creation
Dynamic Token
User Number
Token
Lucky Monkey
Lucky Monkey Values
PEPSI
HTTP Request
Confidentiality
Encoding
Session Management
Summary
Phase Space Analysis
Key Management
Web Servers
PHP
Java
Session Tokens and Cookies
Session Expiration
Model User Behavior
Data Security
Quick Summary

Taught by

Black Hat

Reviews

Start your review of Web Application Session Strength

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.