1. CVE details. http://www.cvedetails.com/.
2. SecTools.Org, http://sectools.org/tag/web-scanners
3. OWASP Top 10 2010, https://www.owasp.org/index.php/Top_10_2010
4. OWASP Top 10 2013, https://www.owasp.org/index.php/Top_10_2013
5. Session Fixation Vulnerability in Web Applications http://www.acros.si/papers/session_fixation.pdf