Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

yes exactly, who in their right mind would assign a UUID as a session token?!?! i mean, good point, wow, this article proves exactly why UUID shouldn't be used for such... then proceeds to show basically a method that is currently used by many... sigh


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: