← LibraryTechnique entry
W-SESSION-FIXCredential Access
Session Fixation
Set the victim's session cookie before authentication; victim logs in, attacker rides the now-authenticated session.
§ Where this technique fits
W-SESSION-FIX is catalogued under the Credential Access tactic of the offensive-security kill-chain. It appears in 0 approved dossiers in the registry, typically.