Cookie security involves protecting user cookies from unauthorized access and misuse. It includes measures such as using secure cookies over HTTPS and implementing appropriate cookie attributes to prevent script access, ensuring the privacy and integrity of user data.

Check failed

Domain Expires HTTP Cookie HTTP Only Path Same Site Secure Value
online.eximbank.com ASP.NET_SessionId / Lax lm3nh1hcdj4zqpdq0k4cnvae
online.eximbank.com f5avraaaaaaaaaaaaaaaa_session_ FPLNJEEDJMBKENBPBGKGHKKIJCPLBLGFPHHGOCJEHFLMNGOGJINNIAOOIOPCNEILMDODFNCOFDMENNJJHDNABIPKFMFKGABCBEHPHADOFOLCEJKKFABNAAMIOLLMAEEM
online.eximbank.com TS01c2c3e6 / 01ca91be35eee3229d313a1ffdfdfe37c412e206269849219fe5797f6695ad9de27e9b2189cef8859f1537bc0ca41213b2caf43657267073d190803fcddf0e8fc3bf4a94ca7cd240669f5d2c545183c905d8d11043
online.eximbank.com Sun, 06 Dec 2026 22:12:07 GMT visid_incap_3225304 / VHsIn9TjTl6ZXQf+WcNNEKDDNGkAAAAAQUIPAAAAAAAro3hKJc8HmkJbQ0N2z1Gu
online.eximbank.com incap_ses_789_3225304 / c8oiZ5DD7wZMx+8lfhfzCqDDNGkAAAAAwVagX0SGfq7azgtUMTzWWw==

Cookies are not secured

The cookies shown uptop are not secured at all, they lack protective measures, rendering them highly susceptible to security threats. This vulnerability exposes users to potential data theft, unauthorized access, and exploitation of web vulnerabilities. Without safeguards like encryption, the HttpOnly flag, and proper SameSite attribute configuration, these cookies can be intercepted, accessed by scripts, and sent in cross-origin requests, making them targets for various attacks, including XSS and CSRF. Extended exposure due to overly long expiration periods and the absence of input validation and secure token handling further compound the risks. Implementing comprehensive security practices is essential to protect cookies and the sensitive data they contain, ensuring a safer online environment.