Cross-Site Request Forgery
Pretnja u centru, tehnike kojima se izvodi levo, odbrane koje je suzbijaju desno. Ispod — mapa faza napada: kojom tehnikom se ulazi i koja odbrana je presreće.
↘ Techniques used to carry it out2
Techniques used to carry it out. Klik vodi na stranicu pojma.
Cross-Site Request Forgery
Cross-site request forgery, or CSRF, exploits the fact that a browser automatically sends existing session cookies to a site where the user is already logged in. The attacker does not need to know the password. It is enough to lead the user down the wrong path.
↗ How it is defended against3
How it is defended against. Klik vodi na stranicu pojma.