Click to get Security Testing Quote

Plynt Blog

Request Tokens to protect against Session Hijacking

by Roshen Chandran  | 16 Nov 2005

Joe Hanink has written an excellent piece on Session Hijacking and Request Tokens in Wikipedia. He shows how Request tokens meet some of the objectives of Page Tokens that we discussed in the August issue of Palisade, and Request Tokens are simpler to implement.

There’s more discussion on Request Tokens and Page Tokens in our comments section.


Plynt provides penetration testing and code review services to clients worldwide. If you are interested, please contact us for a quote. We’ll get back to you within one working day.
Add yours.closed for this post.