Excellent paper on HTTP Sessions

Just finished reading a whitepaper on Web Based Session Management, worth a read. It lists the advantages and disadvantages of the three main forms of session management and common attacks.

Go forth and read!