Session management flaws
In WebGoat read the lessons under “Session management flaws"
Work the exercises of "Session management flaws.”
The exercises to improve WebGoat are not mandatory (try them if you have experience with Java).
Briefly discuss your experience this week. Some ideas follow but you don’t have to answer all the questions. Did you learn something interesting? Was there something confusing in the lesson that you had to look up? If so, what was it? Was it too much or too little work? Anything to add to it to make it better for the next round of students? Anything else you’d like to discuss about this week’s lesson?
A discussion works best when there are at least two people involved so we encourage you to comment on other people’s posts!