WebApp Sec mailing list archives

Re: Web site cookie overload?


From: "Griffiths, Ian" <ian.griffiths () liv-coll ac uk>
Date: Mon, 24 Jan 2005 10:02:03 -0000

A lot of the apps that I have seen re-write the cookie anyway to maintain a
'last active' type date, and I don't think it would make much difference to
the server if the cookie still exists and is over-written or is new.

Ian

----- Original Message ----- 
From: "Nick" <nseward () cscn com>
To: <webappsec () securityfocus com>
Sent: Wednesday, January 19, 2005 8:26 AM
Subject: Re: Web site cookie overload?


 On January 18, 2005 02:59 am, Richard M. Smith wrote:

What I am wondering is what will happen at high volume Web sites if a lot
of folks started running the same cookie tosser that I am using.  Will Web
sites start breaking down because of an overload of cookies being assign
to
too many unique visitors?


Current thread: