Which of the following statements are true about session hijacking?
Each correct answer represents a complete solution. Choose all that apply.
A.
TCP session hijacking is when a hacker takes over a TCP session between two machines.
B.
It is used to slow the working of victim’s network resources.
C.
Use of a long random number or string as the session key reduces session hijacking.
D.
It is the exploitation of a valid computer session to gain unauthorized access to informationor
services in a computer system.
Explanation: