If you're talking about web site session IDs in the form of cookies, URL parameters or hidden form fields, then both Burp Suite and WebScarab can do this sort of analysis.
hey guys, with backtrack 3 there was this neat tool called stompy which would analyse the randomness of web site session Ids. I noticed this tool is gone from bt4. Is there another tool which does that same thing? I know nessus has a plugin to do something similar but could not find one for openvas. Though I've been told the nessus plugin claims the session IDs on some sites are predictable even though stompy claims there is plenty of randomness.
If you're talking about web site session IDs in the form of cookies, URL parameters or hidden form fields, then both Burp Suite and WebScarab can do this sort of analysis.
Capitalisation is important. It's the difference between "Helping your brother Jack off a horse" and "Helping your brother jack off a horse".
The Forum Rules, Forum FAQ and the BackTrack Wiki... learn them, love them, live them.