# Page Not Found

The URL `pentesting/wep-pen/owsap-top-10/broken-access-control/sensitive-cookie-with-improper-samesite-attribute` does not exist.

You might be looking for one of these pages:
- [Sensitive Cookie with Improper SameSite Attribute](https://ahmed-tarek.gitbook.io/security-notes/owsap-top-10-2025/a01-broken-access-control/csrf/sensitive-cookie-with-improper-samesite-attribute.md)
- [Token Impersonation Attack](https://ahmed-tarek.gitbook.io/security-notes/notes/active-directory-pentesting/post-compromise-attacks/token-impersonation-attack.md)
- [Server-Side Request Forgery (SSRF)](https://ahmed-tarek.gitbook.io/security-notes/owsap-top-10-2025/a01-broken-access-control/server-side-request-forgery-ssrf.md)
- [Broken Object Level Authorization (BOLA)](https://ahmed-tarek.gitbook.io/security-notes/notes/api-pen/api-authorization-attacks/broken-object-level-authorization-bola.md)
- [Incorrect Default Permissions](https://ahmed-tarek.gitbook.io/security-notes/owsap-top-10-2025/a01-broken-access-control/incorrect-default-permissions.md)

## How to find the correct page

1. **Browse the full index**: [/sitemap.md](https://ahmed-tarek.gitbook.io/security-notes/sitemap.md) - Complete documentation index
2. **View the full content**: [/llms-full.txt](https://ahmed-tarek.gitbook.io/security-notes/llms-full.txt) - Full content export

## Tips for requesting documentation

- For markdown responses, append `.md` to URLs (e.g., `/security-notes/owsap-top-10-2025/a01-broken-access-control/csrf/sensitive-cookie-with-improper-samesite-attribute.md`)
- Use `Accept: text/markdown` header for content negotiation