Session Hijacking Countermeasures
Detection
Prevention
Session Hijacking Detection Methods
IDS/IPS
Analyzing Logs
Double entries in ARP cache
Session Hijacking Prevention Methods
Secure protocols/Encryption Logging Out Avoid Clicking Hyperlinks Good Session ID Randomization Do not re-use Session ID's Session Expiration Validate Session Origin
Telnet Secure Alternative
SSH
HTTP Secure Alternative
HTTPS
IP Secure Alternative
IPSEC