WebApp Sec mailing list archives

ASP.NET Forms Based Auth Whitepaper


From: Mark Curphey <mark () curphey com>
Date: Tue, 06 Sep 2005 11:26:04 -0400 (EDT)

We have just released a new whitepaper on ASP.NET Forms based authentication. 

This paper describes limitations of the FormsAuthentication.SignOut method, and provides more information about how to 
ease cookie reply attacks when a forms authentication cookie may have been obtained by an malicious user.

http://www.prnewswire.com/cgi-bin/stories.pl?ACCT=104&STORY=/www/story/09-06-2005/0004100451&EDATE=


Current thread: