bars
π
AppSec
search
circle-xmark
β
Ctrl
k
copy
Copy
chevron-down
Cross Site Request Forgery
chevron-right
Cross Site Request Forgery (CSRF)
Labs
Lab: CSRF vulnerability with no defenses | Web Security Academy
WebSecAcademy
chevron-right
Lab: CSRF where token validation depends on request method | Web Security Academy
WebSecAcademy
chevron-right
Lab: CSRF where token validation depends on token being present | Web Security Academy
WebSecAcademy
chevron-right
Lab: CSRF where token is not tied to user session | Web Security Academy
WebSecAcademy
chevron-right
Lab: CSRF where token is tied to non-session cookie | Web Security Academy
WebSecAcademy
chevron-right
Lab: CSRF where token is duplicated in cookie | Web Security Academy
WebSecAcademy
chevron-right
Lab: CSRF where Referer validation depends on header being present | Web Security Academy
WebSecAcademy
chevron-right
Lab: CSRF with broken Referer validation | Web Security Academy
WebSecAcademy
chevron-right
Previous
Source Code Examples
chevron-left
Next
Missing Access Controls
chevron-right
Last updated
5 years ago
Was this helpful?
Was this helpful?