https://danielmiessler.com/blog/the-difference-between-csrf-and-clickjacking
This might be obvious to those most familiar with CSRF and Clickjacking, but for those just getting a handle on it, here’s a short explanation of a fundam
differencecsrfdaniel
https://sensay.canny.io/bugs/p/csrf-forced-logout-vulnerability-sensayio
Step:1 Create Two Accounts On This URL: https://studio.sensay.io/sign-in Step:2 Log out of one account and capture the logout request in Burp Suite image.
csrfforcedlogoutvulnerabilityio
https://simonwillison.net/2021/Aug/3/samesite/
In reading Yan Zhu’s excellent write-up of the JSON CSRF vulnerability she found in OkCupid one thing puzzled me: I was under the impression that browsers...
exploringcookieattributepreventingcsrf
https://academy.hackthebox.com/course/preview/advanced-xss-and-csrf-exploitation
Modern web browsers and applications utilize a variety of security measures to protect against CSRF and XSS vulnerabilities, rendering their exploitation mor...
advancedxsscsrfexploitationcourse
https://xenforo.com/community/threads/pwa-improvements-and-enhanced-csrf-protection.230242/
PWA Improvements Hot on the heels of the improvements announced earlier this week, we have another set of improvements to show you today, again, courtesy of...
xfpwaimprovementsenhancedcsrf
https://www.haproxy.com/glossary/what-is-cross-site-request-forgery-csrf
Aug 27, 2025 - Cross-site request forgery (CSRF) attacks leverage social engineering principles to trick users into submitting malicious requests.
crosssiterequestforgerycsrf
https://www.codecademy.com/learn/learn-about-csrf-attacks
Learn how to identify and the ways to prevent Cross-Site Request Forgery Attacks from a system.
learncsrfattackscodecademy
https://danielmiessler.com/blog/csrf-is-wicked-2
I’ve been studying web security again recently and decided to do a POC of CSRF (Sea Surf) (Cross Site Request Forgery). It’s been done/covered many
csrfwickeddaniel
https://laravel.com/docs/12.x/csrf
Laravel is a PHP web application framework with expressive, elegant syntax. We’ve already laid the foundation — freeing you to create without sweating the...
php frameworkcsrfprotectionlaravelx
https://auth-wiki.logto.io/csrf
Cross-site request forgery (CSRF) is an attack that deceives users into executing unwanted actions on a web application in which they are authenticated. It is...
crosssiterequestforgerycsrf
https://syntax.fm/show/363/hasty-treat-csrf-explained
Wes and Scott explain cross-site request forgery (CSRF) and different ways to prevent it like cookies, tokens, and headers.
hastytreatcsrfexplainedsyntax
https://blog.chromium.org/search/label/csrf
News and developments from the open source browser project
chromium blogcsrf