Slashdot Mirror


New Crypto Attack Affects Millions of ASP.NET Apps

Trailrunner7 writes "A pair of security researchers have implemented an attack that exploits the way that ASP.NET Web applications handle encrypted session cookies, a weakness that could enable an attacker to hijack users' online banking sessions and cause other severe problems in vulnerable applications. Experts say that the bug, which will be discussed in detail at the Ekoparty conference in Argentina this week, affects millions of Web applications."

2 of 156 comments (clear)

  1. when it comes to anything important: by Kristopeit,+M.+D. · · Score: 0, Troll

    roll your own at the lowest possible layer. anything else and you're leaving your chin open.

  2. Re:100% reliable? by sproketboy · · Score: 0, Troll

    Hey mongoose don't bring Java into this you fucken M$ wanker. It affects ASP only.