Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
dTub
Скачать

HTTP Cookies Crash Course

Автор: Hussein Nasser

Загружено: 2019-05-01

Просмотров: 132940

Описание:

HTTP Cookies are small pieces of data that are used as storage medium in the browser and are also sent to the server with each request.

Cookies are mainly used for session management, user personalization, and tracking.

In this video we will try to demystify cookies and learn everything there is to them by example and with demos as well!

0:00 Intro
4:15 Section 1 - Creating Cookies
14:38 Section 2 - Cookie Properties
44:00 Section 3 - Cookie Types
1:02:00 Section 4 - Cookie Secuirty



Creating Cookies
1. Document.cookie (client side)
2. set-cookie header (server side)


Cookies Properties
Sent with each request
Cookies are automatically sent to the server with each request. so becareful not to stuff your app with cookies because it might slow down as network bandwidth become saturated with bloated requests..


Per Domain
They are stored per domain think of them as cookie buckets, for instance you visit google.com you will get a specific cookie for google.com, any cookies created while in google.com will go to the google.com bucket and so on. there are exceptions but this the general rule.

by default if you create cookie, it will only be accessable within the domain, it will only be sent to the same domain. You can create a cookie with the domain property which will also include subdomains. example, domain=husseinnasser.com , includes blog.husseinnasser.com, about.husseinnasser.com etc..


Example.com
www.example.com


Path specific cookies
cookies for a given path only. /r1 /r2 routes make only cookie for r1 and cookie for r2 client will only send cookies for that path.
if you know you are going to use the cookies in certain paths why waste precious bandwidth sending it with every path?


Cookies Types
1. Session cookie - no expires or max-age, once browser close they are “deleted” browsers are being smart and keep them though
2. permanent cookie - set max-age
3. httponly cookie cannot be accessed with document.cookie
4. secure cookie only acceptable with https
5. Third party cookie - page references another page, gets its own cookies..
6. Zombie Cookies - recreted even after users delete them, e-tags from the server

Cookie Security
1. Stealing cookies, inject XSS script,
2. cross site request forgery, more dangerous and easier, I don’t want your cookie I just want to make a request on your behave using your cookie and make myself an advtange as a result.. since you are signed in to your bank I will inject a script that makes a request ot YOUR bank to transfer myself money.. samesite




Stay Awesome!
Hussein

HTTP Cookies Crash Course

Поделиться в:

Доступные форматы для скачивания:

Скачать видео mp4

  • Информация по загрузке:

Скачать аудио mp3

Похожие видео

SameSite Cookie Attribute Explained by Example (Strict, Lax, None & No SameSite)

SameSite Cookie Attribute Explained by Example (Strict, Lax, None & No SameSite)

WebSockets Crash Course - Handshake, Use-cases, Pros & Cons and more

WebSockets Crash Course - Handshake, Use-cases, Pros & Cons and more

Как файлы cookie могут отслеживать вас (простое объяснение)

Как файлы cookie могут отслеживать вас (простое объяснение)

Владимир Пастухов* и Алексей Венедиктов*. Пастуховские четверги / 25.12.25

Владимир Пастухов* и Алексей Венедиктов*. Пастуховские четверги / 25.12.25

Authentication on the Web (Sessions, Cookies, JWT, localStorage, and more)

Authentication on the Web (Sessions, Cookies, JWT, localStorage, and more)

Совместное использование ресурсов между источниками (пояснение на примере)

Совместное использование ресурсов между источниками (пояснение на примере)

HTTP-заголовки и файлы cookie

HTTP-заголовки и файлы cookie

Cookies, Sessions, JSON Web Tokens (JWT) and More 🍪🔐

Cookies, Sessions, JSON Web Tokens (JWT) and More 🍪🔐

Apache Kafka Crash Course

Apache Kafka Crash Course

Synchronous vs Asynchronous Applications (Explained by Example)

Synchronous vs Asynchronous Applications (Explained by Example)

Разница между файлами cookie, сеансом и токенами

Разница между файлами cookie, сеансом и токенами

Web App Pentesting - HTTP Cookies & Sessions

Web App Pentesting - HTTP Cookies & Sessions

Как ЗАРАБОТАТЬ на ЧУЖОЙ квартире? | амоБлог

Как ЗАРАБОТАТЬ на ЧУЖОЙ квартире? | амоБлог

Is Zorin OS the Best Windows Replacement?

Is Zorin OS the Best Windows Replacement?

JavaScript Cookies vs Local Storage vs Session Storage

JavaScript Cookies vs Local Storage vs Session Storage

HTTP Caching with E-Tags -  (Explained by Example)

HTTP Caching with E-Tags - (Explained by Example)

gRPC Crash Course - Modes, Examples, Pros & Cons and more

gRPC Crash Course - Modes, Examples, Pros & Cons and more

Что такое файлы cookie и как они работают | Объяснение для начинающих!

Что такое файлы cookie и как они работают | Объяснение для начинающих!

How HTTP/2 Works, Performance, Pros & Cons and More

How HTTP/2 Works, Performance, Pros & Cons and More

What are Third Party Cookies, How do they work?

What are Third Party Cookies, How do they work?

© 2025 dtub. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]