Penetration Testing mailing list archives

Re: saving session cookies?


From: offset <offset () svcroot net>
Date: Wed, 15 Mar 2006 03:32:26 +0200

Yo Gary :)

Thanks for the feedback.

wget did go through my mind, but...

Some of the sites I work with, I need to go through a complex authentication scheme that will allow me further into the 
site and wget isnt interactive enough for me (at least for session gathering)

Basically I want to save enough data through the authentication system to use wget/curl/custom script later (and send 
appropriate session information).

-off

On Tue, Mar 14, 2006 at 03:55:41PM -0800, Gary E. Miller wrote:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Yo Offset!

On Tue, 14 Mar 2006, offset wrote:

Does anyone know of a way to save session cookies for later use (ie. for
 load into curl).

wget --save-cookies [file] http://www.example.com

RGDS
GARY

------------------------------------------------------------------------------
This List Sponsored by: Cenzic

Concerned about Web Application Security? 
As attacks through web applications continue to rise, you need to proactively 
protect your applications from hackers. Cenzic has the most comprehensive 
solutions to meet your application security penetration testing and 
vulnerability management needs. You have an option to go with a managed 
service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). 
Download FREE whitepaper on how a managed service can help you: 
http://www.cenzic.com/news_events/wpappsec.php 
And, now for a limited time we can do a FREE audit for you to confirm your 
results from other product. Contact us at request () cenzic com
------------------------------------------------------------------------------


Current thread: