Welcome to HBH! If you have tried to register and didn't get a verification email, please using the following link to resend the verification email.

Breaking session ID?


Mb0742's Avatar
Ultimate Headshot
0 0

You know how you can forge sessions and what-not?

I think I have a sid encoded by server and my question is how do you get them back into their old session['somethinghere'] form?


Mb0742's Avatar
Ultimate Headshot
0 0

curious question but hell, isn't part of the pen test challenge session ID tampering?


Mb0742's Avatar
Ultimate Headshot
0 0

Maybe some links or information {bump}


ghost's Avatar
0 0

like mosh said…in the pen testing challenge your not trying to change session…if im correct(been awhile) your trying to end the session and add to the inurl commands. -peace


Mb0742's Avatar
Ultimate Headshot
0 0

Well yeah I do want to know how to do the pen one but still. How do you go about breaking session ID?


Mb0742's Avatar
Ultimate Headshot
0 0

I mean understanding what the server has given you in your sid.

Thanks for the continuing help ^.^