Session based Attacks

From Defcon conference i found these solution for Session attack. • Prevent XSS • Use a different SID generation method • IP Address check implemented with SID generation and authentication • Use hash of IP as part of SID generation

Welcome to SWAF

The aim of this project is to provide effective real-time Web application security. Web which was once supposed to be a simple document exchange mechanism, has now become imperative and ubiquitous. Information flows are increasingly embedded into Web applications, making

