Sabtu, 16 Mei 2009

Sniffing the cookie in the network

This time I want to share information about the theft of cookie in the same network with us.

A cookie is a temporary key used to validate the access at the time
relationship so that authentication occurs only ONE time only.

Cookies are temporary so that the period has Expired. During the not yet expired
cookies are still used as a validator, akan otherwise can not be used
again when the pass is expired.

Theft of cookie made with peep the flow of data in the network with the tool
war such as "wireshark". After the cookie is found, the cookie added
we are in the browser (eg modzilla) so we have a duplication
keys / cookies that are considered valid when the person doing the transaction data.

To add a cookie to the browser I use add-ons modzilla "cookie editor."

Following list of cookies that are used by each provider:


1. www.GMAIL.com
------------ --------- --------- --------- --------- -- ------- --
The name cookie: GAUSR
Content: mail: email_address(example mail: yourname@ gmail.com)
Host / Domain: www.google.com
Path: / account

The name cookie: GX
Content: adjusted
Host / Domain:. Mail.yahoo. com
Path: / mail

The name cookie: LSID
Content: adjusted
Host / Domain:. Mail.google. com
Path: / mail

2. www.friendster. com
------------ --------- --------- --------- --------- -- ------- --
The name cookie: friendster_auth_ v2
Content: adjusted
Host / Domain:. Www.friendster. com
Path: /

3. www.yahoo.com
------------ --------- --------- --------- --------- -- ------- --
Cookie name: T
Content: adjusted
Host / Domain:. Yahoo.com
Path: /

Cookie name: Y
Content: adjusted
Host / Domain:. Yahooo.com
path: /

Share/Save/Bookmark

0 komentar:

 

Join to the future © 2008 using D'Bluez Theme Designed by Ipiet Supported by Tadpole's Notez Based on FREEmium theme