(?)
Quotes are added by the Goodreads community and are not verified by Goodreads. (Learn more)

“Each time the user makes a request, the page token is validated against the last value issued, in addition to the normal validation of the main session token. In the case of a non-match, the entire session is terminated. Many of the most security-critical web applications on the Internet, such as online banks, employ per-page tokens to provide increased protection for their session management mechanism,”

Dafydd Stuttard, The Web Application Hacker's Handbook: Finding and Exploiting Security Flaws
Read more quotes from Dafydd Stuttard


Share this quote:
Share on Twitter

Friends Who Liked This Quote

To see what your friends thought of this quote, please sign up!

0 likes
All Members Who Liked This Quote

None yet!


This Quote Is From

The Web Application Hacker's Handbook: Finding and Exploiting Security Flaws The Web Application Hacker's Handbook: Finding and Exploiting Security Flaws by Dafydd Stuttard
1,224 ratings, average rating, 61 reviews
Open Preview

Browse By Tag