Server sessions are only safe if you know how to protect your site from other malicious attacks that you don't get with the session in the url.
You cant just change from a session in the url to a Server session and think that it is safer - (its actually much more dangerous if unprotected)
You cant just change from a session in the url to a Server session and think that it is safer - (its actually much more dangerous if unprotected)
Comment