[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]
Re: hijacked session anomaly?
- To: or-talk@xxxxxxxxxxxxx
- Subject: Re: hijacked session anomaly?
- From: "Michael_google gmail_Gersten" <keybounce@xxxxxxxxx>
- Date: Mon, 23 Jul 2007 07:21:04 -0700
- Delivered-to: archiver@xxxxxxxx
- Delivered-to: or-talk-outgoing@xxxxxxxx
- Delivered-to: or-talk@xxxxxxxx
- Delivery-date: Mon, 23 Jul 2007 10:21:14 -0400
- Dkim-signature: a=rsa-sha1; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=sF1QOZ4nOEtmNkob1/dBlwMV391FKPdxjyIJq0wYXUb/I04LqzT650NnFtWYB479Vs06xJERF9HPTo1RN679s39M2qoOLSTXSVCHkEPJBUro0IQnGRzHgjItSF848faIHr2AB8wY8DVhjjf0AwKQ0PaJ8EXSoRmKu/FEChXeApw=
- Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=mBQxakuEbgwUcFxEXURFZ0dGH1ak41h/YVBJMaMBnvl+6Dc0faNVDrqtxeYxohITsx1RsK9/K8ijS1LQf9Iajw8KjTS2I1P9MLQMDRkdKx7TaOvHPh91yARkFbUucb5eZwqBMKeo3Hab9A7HsnV/DAKuRn2jNzzvSi8qIo1uTDs=
- In-reply-to: <46A46B48.1030304@xxxxxxxxxx>
- References: <46A46B48.1030304@xxxxxxxxxx>
- Reply-to: or-talk@xxxxxxxxxxxxx
- Sender: owner-or-talk@xxxxxxxxxxxxx
I've seen PhpBBS systems that assume that I've logged out and logged
back in when my IP address changes (makes those systems a bleep to use
with Tor). It would not surprise me to find someone somewhere that
assumed "Same IP, no cookies -- OK, they have cookies turned off, but
are the same person".