Session Hijacking Attack | Session ID and Cookie Stealing | SideJacking

Поделиться
HTML-код
  • Опубликовано: 4 июн 2024
  • #session_hacking #sidejacking #xss
    Understanding Session Hijacking, also called side-jacking, is important for web developers, aspiring security engineers, and Internet users in general. Session Hijacking is a technique hackers use to steal session IDs to gain access to private systems and personal accounts to enjoy and take advantage of advanced privileges. Session Hijacking allows attackers to penetrate vulnerable systems by stealing the IDs of users to perform privileged actions taking advantage of the trust between the victim's browser and the system. Social engineering techniques are used to get the victim to click a link or submit a form that will open the door for the attacker to perform malicious actions.
    In this video, I explain Session Hijacking by starting with a typical scenario of a seemingly different but very similar case. The story will help you get a general idea. Then we dive deeper into what exactly a session is, what is session hijacking, how it works, types of session hijacking attacks, and ways to defend against these types of attacks.
    -------- Video Outline --------
    00:00 Understanding the danger
    01:45 Understanding Sessions and How They Work
    03:45 Session Hijacking
    05:43 Types of CSRF Attacks and How They Work
    10:55 How to defend against CSRF Attacks
    Check out more of The TechCave Videos:
    * • What is a VPN & How do... - What is a VPN and How does it work? VPNs Explained!
    * • CSRF Explained | Under... - CSRF Explained | What is XSRF?
    * • What is XSS? | Underst... - XSS | Cross-Site Scripting
    * • What is CORS? | Cross-... - CORS | Cross-Origin Resource Sharing
    * • The Http and the Web |... - HTTP and The Web
    * • APIs | REST | REST API... - REST APIs
    * • What is DevOps | Under... - DevOps
    * • Web Services - Demysti... - Web Services
    * • Software Architecture ... - Software Architecture
    Artwork and Illustration: Flaticon.com
    Stay Tuned!
  • НаукаНаука

Комментарии • 25

  • @aymaneelmadidi887
    @aymaneelmadidi887 2 года назад +2

    Good to see you back🔥🔥🔥

  • @comosaycomosah
    @comosaycomosah 2 месяца назад

    these videos are great bro and just really well made was surprised it wasn't a company or any website or anything as well as no videos in forever

  • @anasssoulimani9288
    @anasssoulimani9288 2 года назад +7

    Informative and entertaining as always ❤

  • @misssg85
    @misssg85 11 месяцев назад +1

    Great explanation! Thank you so much!!

  • @rahatsshowcase8614
    @rahatsshowcase8614 5 месяцев назад

    excellent content! Keep bringing up these attacks and their solves
    !

  • @fuballplanet6952
    @fuballplanet6952 2 года назад +1

    Hi, you have such a amazing way to simplify things thanks from algeria

  • @rasdilanggud.p9705
    @rasdilanggud.p9705 Год назад +1

    Super informative 🔥🔥

  • @macxoaries9219
    @macxoaries9219 Год назад

    explained in simple terms very good indeed

  • @simoneonorato1223
    @simoneonorato1223 Год назад

    Great video thank you!!

  • @hamedahmadi9291
    @hamedahmadi9291 2 года назад +1

    great job ! helped a lot

  • @securoid
    @securoid 2 года назад

    Awesome explanation

  • @bhargavanand7325
    @bhargavanand7325 Год назад

    Great video

  • @sofianealloui
    @sofianealloui Год назад

    Thanks a lot bro ♥

  • @nahidnuri
    @nahidnuri Год назад

    Thanks a bunch

  • @GodfreyMann
    @GodfreyMann 2 месяца назад

    These defensive techniques can only be implemented on the server side…they’re of no use to a user.
    Best tip for users are: (a) avoid public wifi i.e. use mobile data; (b) if using public wifi then use a VPN; (c) logout of all sessions - don’t just close the browser tab;
    …any other tips?

  • @naveenjatangi4326
    @naveenjatangi4326 2 года назад +1

    Can we get those PPT Slides 🙃

  • @techandgaming17
    @techandgaming17 2 года назад

    this video deserves more likes

  • @colindante5164
    @colindante5164 10 месяцев назад

    Thankyou much ))

  • @okeypraisejunior7527
    @okeypraisejunior7527 2 года назад

    Love it

  • @blackball943
    @blackball943 7 дней назад

    Nowadays almost every websites uses https,then what’s the point of this video of its so outdated?(just asking)

  • @antwanwimberly1729
    @antwanwimberly1729 6 месяцев назад

    Use http only at the cookie level and SSL

  • @unpopularopinion1032
    @unpopularopinion1032 2 года назад

    I evolving from neanderthal now, ty

  • @hoasada5151
    @hoasada5151 Год назад

    Am here to learn more because my beloved RUclipsr have his channel stolen due to this kind of attack. Your videos are very informative and I would definitely want to learn more about cyber security from you !