Capture-Replay Attack
An attack that records a valid authentication exchange and re-sends it to gain access, exploiting the fact that the captured token is not bound to a single session or destination. Classified as CWE-294.
An attack that records a valid authentication exchange and re-sends it to gain access, exploiting the fact that the captured token is not bound to a single session or destination. Classified as CWE-294.