Hacksplaining
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance
Sign Up
Log In
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance Sign Up Log In

Session Fixation

Vic clicks on the link. Since he isn't currently logged in, your site presents him with the login page. It accepts the session ID previously fixed by Mal in the URL.

www.hmstr.com/login
A still of a hamster eating spaghetti
I'm v. excited to see this hamster.
A potential hacking victim

Vic clicks on the link. Since he isn't currently logged in, your site presents him with the login page. It accepts the session ID previously fixed by Mal in the URL.

Lessons
Glossary
Terms and Conditions
Privacy Policy

© 2026 Hacksplaining Inc. All rights reserved. Questions? Email us at support@hacksplaining.com