Safety of cookies

Discussion in 'Ethical hacking' started by stevenroose, Mar 23, 2009.

  1. stevenroose

    stevenroose Guest

    Hi,

    I was wondering about the safety of using cookies.
    The main question I have is: Can people add cookies to their own PC and make your browser think they are placed by a website??
    I remember that, when using IE6 long time ago, the cookies were just stored in small text files and I thought, then (being 12 years of age), that I could just add one myself.

    I'm not an expert of how browsers use and store cookies so I can't imagine how safe they are.

    So, my main question was: Can people add cookies to their own PC and make your browser think they are placed by a website??

    thanks in advance,

    Steven Roose
     
  2. xpi0t0s

    xpi0t0s Mentor

    Joined:
    Aug 6, 2004
    Messages:
    3,009
    Likes Received:
    203
    Trophy Points:
    63
    Occupation:
    Senior Support Engineer
    Location:
    England
    Yes. You'd need to know the format of the cookie though, which may be difficult to determine, but there's nothing to stop you constructing one with a text or hex editor and placing it in the appropriate directory.
     
  3. fourthdimension

    fourthdimension New Member

    Joined:
    Jan 8, 2009
    Messages:
    144
    Likes Received:
    11
    Trophy Points:
    0
    Home Page:
    http://www.easygeek.org
    I just wrote a tutorial on this here:
    http://techmafias.com/Thread-all-about-cookies
     
  4. shabbir

    shabbir Administrator Staff Member

    Joined:
    Jul 12, 2004
    Messages:
    15,375
    Likes Received:
    388
    Trophy Points:
    83
    fourthdimension, That link is not available for Guests. :(
     
  5. fourthdimension

    fourthdimension New Member

    Joined:
    Jan 8, 2009
    Messages:
    144
    Likes Received:
    11
    Trophy Points:
    0
    Home Page:
    http://www.easygeek.org
  6. shabbir

    shabbir Administrator Staff Member

    Joined:
    Jul 12, 2004
    Messages:
    15,375
    Likes Received:
    388
    Trophy Points:
    83
  7. SpOonWiZaRd

    SpOonWiZaRd Know what you can do.

    Joined:
    May 30, 2007
    Messages:
    746
    Likes Received:
    8
    Trophy Points:
    0
    Occupation:
    Network Engineer/Programmer
    Location:
    South Africa

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice