A user just logged into a web app. Their browser stored this session cookie:
session_id=eyJ1c2VyIjoiYWRtaW4ifQ==
That value after the = looks like Base64 encoding. What could it contain?
// Simulated environment. Real attacks work exactly like this.