How to protect against cross-site request forgery attacks18 April 2017, 12:45 pm
Cross-site request forgery (CSRF) attacks are becoming a more common attack method used by hackers. These attacks take advantage of the trust a website has for a userâ€™s input and browser. The victim is tricked into performing a specific action they were not intending to do on a legitimate website; where they are authenticated to.
CSRF attacks will use the identity and privileges that the victim has on the website to impersonate them and perform malicious activity or transactions. Attackers will attempt to take advantage of users who have login cookies stored in their browsers. Ecommerce sites that send cookies to store user authentication data are vulnerable to this attack.
To read this article in full or to leave a comment, please click hereSource: Network World Security
>> To obtain the full NetworkWorld Security article, click the link in the first post line <<