Snapt Nova

Nova is a centrally managed, container-based ADC platform providing Layer 7 load balancing, GSLB, WAF and web acceleration. Nova is cloud-native, hyperscale and intelligent.

Snapt Aria

Layer 7 load balancing, web acceleration, WAF and global DNS load balancer. Blazing fast throughputs, high SSL TPS and runs on any cloud, VM or bare metal.

Need help choosing?

Compare Snapt Nova and Snapt Aria. You can even try them both for free.

Got time for a good read?

Cookie Poisoning

Bethany Hill
Sep 4, 2020 12:00:00 PM

Cookie poisoning refers to manipulation of a cookie for the purposes of posing as another user when communicating with web servers.

By manipulating cookies, a hacker is able to gain access to user identity information and/or facilitate the unauthorized exfilteration of data from web servers.
Cookies are usually populated in client devices by web servers when clients access them. Cookies are used for authenticating user access by storing tokens which are presented with subsequent client request to servers. This speeds up access to protected web content and resources as the tokens are used to prove authentication and authorization of client devices as opposed to having to authenticate upon sending each and every request. Cookies also allow for the personalization of the content delivered to clients.

An application delivery controller can be configured to inspect cookies and encrypt sensitive information when cookies pass between client and server. This protects the cookie content from being exposed to unauthorized personnel. In the case that a hacker is still able to harvest cookies, cookies can also be digitally signed at an ADC so that if the cookie is altered, as part of an attack by a hacker, it will become invalidated. The digital signature generated by the altered or manipulated cookie will no longer match the signature on record with the ADC and requests using such a cookie will be rejected.

You May Also Like

These Stories on Glossary

Subscribe by Email

No Comments Yet

Let us know what you think