Esc
Steal Web Session Cookie - T1539
(ATT&CK® Technique)
Definition
An adversary may steal web application or service session cookies and use them to gain access to web applications or Internet services as an authenticated user without needing credentials. Web applications and services often use session cookies as an authentication token after a user has authenticated to a website.
D3FEND Inferred Relationships
Browse the D3FEND knowledge graph by clicking on the nodes below.