Question: An attacker was able to obtain a session token corresponding to an authenticated user in a web application that requires a one time password as
An attacker was able to obtain a session token corresponding to an authenticated user in a web application that requires a one time password as a second factor authentication what statement is true in the scenario the attacker still needs the one time password to a person user the attacker will not be able to impersonate the user due to the second factor authentication the attacker can impersonate us with the token as far as the session is active
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
