[imp] Security - user A got into userB's email

Chuck Hagenbuch chuck at horde.org
Thu Oct 23 12:32:59 PDT 2003


Quoting Kim Hoffman <khoffman at uwo.ca>:

> Cookies are OK for those who own their own systems.  However, we think
> cookies would be unsecure for users who 'share' systems.

They have their disadvantages, but they are *much* better than GET-based
sessions.

-chuck

--
Charles Hagenbuch, <chuck at horde.org>
Born right the first time.


More information about the imp mailing list