← Back to Glossary
Session Fixation
An attack that forces a user to use a session ID chosen by the attacker, allowing the attacker to hijack the session after the user authenticates.
An attack that forces a user to use a session ID chosen by the attacker, allowing the attacker to hijack the session after the user authenticates.