- An attack in which an attacker steals authentication tokens after all factors have been validated. These tokens, which can include cookies but also bearer tokens as well as JWTs (JSON Web Tokens), are then used to perform session hijacking.
- More about this term (beta): articles and videos, books, web search
- Previous term: Pascal case
- Next term: Passkey
- Random term: IP address (or roll the dice with webglossary.info/random)