PrepAway - Latest Free Exam Questions & Answers

3 Comments on “What type of session hijacking attack is shown in the exhibit?

  1. D33pBr3dt says:

    Ans: D

    Session Fixation – Social engineering is involved in this attack.

    This photo is fairly misleading. Step 1 is the attacker logging into the vulnerable web application. The attacker then sends this ID to the victim who logs into the web application. Session ID is known to the attacker, just reload the browser. Hence the term fixation.


Leave a Reply