Chapter 5. Web Header Manipulation
In this chapter, we will cover the following topics:
- Testing HTTP methods
 - Fingerprinting servers through HTTP headers
 - Testing for insecure headers
 - Brute forcing login through the Authorization header
 - Testing for clickjacking vulnerabilities
 - Identifying alternative sites by spoofing user agents
 - Testing for insecure cookie flags
 - Session fixation through a cookie injection