You are here: Re: Reading remote Session ID « All PHP « IT news, forums, messages
Re: Reading remote Session ID

Posted by J.O. Aho on 03/26/07 00:33

Brian wrote:
> Hi there
>
> I have just spent some time re-done a form on my on my site, I have added
> one of those random images.

As we don't see how you added it, it's difficult to say yes or no.


> Please can somebody tell me if what I am doing is correct, the reason I ask
> I was under the impression
> you could not read a session ID without opening up the site in a browser, so
> without this you can't make a
> posting.

It's possible to hijack someone else session, but it's not something that you
do by automatics. Depending on how long a session is allowed to be alive on
your side, someone could visited your site once, save the session id and then
reused it. From the man page for wget you can see how easy it's to reuse a
session or make an automatic login.
http://www.cbi.pku.edu.cn/Doc/CS/wget/man.wget.html


> It now seems that I am being targeted again and not sure if this is a remote
> script or somebody trying to
> piss me off.by manually entering stuff

As you don't describe what is happening and no code, we still don't know what
to say.


> So the question is how are they getting pasted it?

They use a blue wand, kind of the same as Harry Potter, but a blue one.


--

//Aho

 

Navigation:

[Reply to this message]


Удаленная работа для программистов  •  Как заработать на Google AdSense  •  England, UK  •  статьи на английском  •  PHP MySQL CMS Apache Oscommerce  •  Online Business Knowledge Base  •  DVD MP3 AVI MP4 players codecs conversion help
Home  •  Search  •  Site Map  •  Set as Homepage  •  Add to Favourites

Copyright © 2005-2006 Powered by Custom PHP Programming

Сайт изготовлен в Студии Валентина Петручека
изготовление и поддержка веб-сайтов, разработка программного обеспечения, поисковая оптимизация