FlashcardIntermediate
CSRF and Cookie-Based Sessions
Automatic cookie sending lets attackers forge authenticated cross-site requests.
Question
Why are cookie-based sessions vulnerable to CSRF?
Click to reveal answer
Automatic cookie sending lets attackers forge authenticated cross-site requests.
Why are cookie-based sessions vulnerable to CSRF?