Possible Duplicate:
Can you secure a web app from FireSheep without using SSL?
How can I prevent someone on same network from stealing SESSIONID and using it in his own browser (it would mean that he can "log in" without any passwords) without using HTTPS ?
Is there any way in PHP to check/prevent/detect it?
If it's more suitable for StackOverflow, please move it someone