What is Session Hijacking?

Session hijacking is a type of cyberattack that WordPress site owners need to know about. Also known as TCP session hijacking, session hijacking makes attackers look like properly logged-in users. The attacker takes over a user session by obtaining their session ID without the valid user’s knowledge or permission. After a hacker has stolen a user’s session ID, they can masquerade as the targeted user. The attacker will be able to do everything the authorized user can do when they’re logged into the same system.

This post was originally published on iThemes by Dan Knauss.

Follow us

Don't be shy, get in touch. We love meeting interesting people and making new friends.