Cookie security involves protecting user cookies from unauthorized access and misuse. It includes measures such as using secure cookies over HTTPS and implementing appropriate cookie attributes to prevent script access, ensuring the privacy and integrity of user data.

Check failed

Domain Expires HTTP Cookie HTTP Only Path Same Site Secure Value
online.eximbank.com ASP.NET_SessionId / Lax wukk4iwrucb5m2zpawrfcgsg
online.eximbank.com f5avraaaaaaaaaaaaaaaa_session_ KJHIOEDCHKHFJGCCCHIGICMNKOKKMCGPLBDEIBDDGNGHBLJONAGPGPDOCCFOEEPBPBNDHKPPIOOJDJKALGFAHKGBGPDDONKHHEMAFPDLMJDNEMGFCLAJKDHMGMLKBKOJ
online.eximbank.com f5_cspm 1234
online.eximbank.com TS01c2c3e6 / 01ca91be3503b25c10af0ef437bc550788e075dac01bd865a3f4ee495ef8298874be0fd567688f8eea5b3eed12749ed8d82f048f981d5627824dea3a87d2be561be53d3b5b9e772cb665bbda629cc3b47ffc754c63c7dbd580b37e07dcbab03a5b78c4916f

Cookies are not secured

The cookies shown uptop are not secured at all, they lack protective measures, rendering them highly susceptible to security threats. This vulnerability exposes users to potential data theft, unauthorized access, and exploitation of web vulnerabilities. Without safeguards like encryption, the HttpOnly flag, and proper SameSite attribute configuration, these cookies can be intercepted, accessed by scripts, and sent in cross-origin requests, making them targets for various attacks, including XSS and CSRF. Extended exposure due to overly long expiration periods and the absence of input validation and secure token handling further compound the risks. Implementing comprehensive security practices is essential to protect cookies and the sensitive data they contain, ensuring a safer online environment.