Web Security: Common Vulnerabilities And Their Mitigation - Session hijacking using session fixation
Interactive Video
•
Information Technology (IT), Architecture
•
University
•
Practice Problem
•
Hard
Wayground Content
FREE Resource
Read more
7 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
What is the primary goal of session fixation?
To delete a user's session ID
To steal a user's session ID
To set a user's session ID to a known value
To encrypt a user's session ID
2.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
How does untrustedbank.com become vulnerable to session fixation?
By generating new session IDs for each login
By accepting session IDs only from cookies
By accepting any session ID specified by the user
By using encrypted session IDs
3.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
What action does the attacker take to exploit the session fixation vulnerability in untrustedbank.com?
Sends a phishing email with a fixated session ID link
Hacks into the bank's server
Steals the victim's password
Uses a brute force attack
4.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Why are server-generated session IDs not a complete solution to session fixation?
Attackers can still use their own server-generated IDs
They are always encrypted
They require user consent
They are too complex to implement
5.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
What is a cross sub-domain cookie?
A cookie that is encrypted
A cookie that cannot be accessed by sub-domains
A cookie set by a sub-domain on the main domain
A cookie set by the main domain
6.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
How can an attacker exploit cross sub-domain cookies?
By using cookies only from the main domain
By setting a cookie on a trusted site through an untrusted sub-domain
By deleting all cookies from the browser
By encrypting the cookies
7.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
What should a trusted site avoid to prevent session fixation via cross sub-domain cookies?
Allowing third-party sub-domains to set cookies
Using encrypted session IDs
Generating new session IDs for each login
Accepting session IDs only from query strings
Similar Resources on Wayground
6 questions
Web Hacker's Toolbox - Tools Used by Successful Hackers - Google Hacking: Finding SQL Syntax Errors
Interactive video
•
University
6 questions
SSL Complete Guide 2021: HTTP to HTTPS - How TLS Session is Established
Interactive video
•
University
6 questions
.NET Core Microservices - Login Registration Redirection
Interactive video
•
University
8 questions
REST APIs with Flask and Python - Blacklisting with Flask-JWT-Extended
Interactive video
•
University
6 questions
Master Microservices with Spring Boot and Spring Cloud - Step 06 – Enhancing the Hello World Service with a Path Variabl
Interactive video
•
University
6 questions
The Complete Guide to ASP.NET Core MVC (.NET 5) - Partial Views
Interactive video
•
University
6 questions
SkillSprints: Building Good Log-on and Log-off Habits
Interactive video
•
KG - University
6 questions
SSL Complete Guide 2021: HTTP to HTTPS - Overview of the Current Setup
Interactive video
•
University
Popular Resources on Wayground
5 questions
This is not a...winter edition (Drawing game)
Quiz
•
1st - 5th Grade
25 questions
Multiplication Facts
Quiz
•
5th Grade
10 questions
Identify Iconic Christmas Movie Scenes
Interactive video
•
6th - 10th Grade
20 questions
Christmas Trivia
Quiz
•
6th - 8th Grade
18 questions
Kids Christmas Trivia
Quiz
•
KG - 5th Grade
11 questions
How well do you know your Christmas Characters?
Lesson
•
3rd Grade
14 questions
Christmas Trivia
Quiz
•
5th Grade
20 questions
How the Grinch Stole Christmas
Quiz
•
5th Grade
Discover more resources for Information Technology (IT)
26 questions
Christmas Movie Trivia
Lesson
•
8th Grade - Professio...
20 questions
christmas songs
Quiz
•
KG - University
20 questions
Holiday Trivia
Quiz
•
9th Grade - University
15 questions
Holiday Movies
Quiz
•
University
14 questions
Christmas Trivia
Quiz
•
3rd Grade - University
20 questions
Christmas Trivia
Quiz
•
University
8 questions
5th, Unit 4, Lesson 8
Lesson
•
KG - Professional Dev...
20 questions
Disney Trivia
Quiz
•
University