Web Hacking Members Only

Session Management

How web sessions actually work. Server-side sessions vs token-based, every cookie attribute, the full lifecycle, session fixation, hijacking via XSS, MITM, prediction. Storage trade-offs (cookie vs localStorage vs in-memory). Defences, tools, and a battle-tested cheat sheet.

Related Articles