As cookie is associated with Layer 7 i.e Web-Application,i would say this belongs to "Web Application Security"...
Possibly in the case of XSS cookie stealing but firesheep especially and the others rely on the network to be of any use. You could include them in either or both modules.