How Cross-site Request Forgery (CSRF) Tokens Work

preview_player
Показать описание
Twitter: @webpwnized

Thank you for watching. Please upvote and subscribe.
Рекомендации по теме
Комментарии
Автор

Love these videos!! More vids on app sec and exploiting vulnerable Vms like this plz.

Thank you 🙏🏼

riotmakerzify
Автор

A question on tokens: Without a token, I can continuously submit POST requests successfully. But if there's a token, I should still be able to submit successful requests, by doing a GET to get the token first and then follow it up with a POST, right?

slpfcw
Автор

brother how this token is verifying by the page how it is working under the hood I have seen all videos but no one is saying how the token is sent to website for verfying . I want to know how the token is sent to server or page for verfication how it is working under the hood?

hellyeahhydra