Exploiting CSRF under NoScript Conditions

CSRFs — or Cross-Site Request Forgery vulnerabilities — occur when a server accepts requests that can be “spoofed” from a site running on a different domain. The attack goes something like this: you, as the victim, are logged in to some web site, like your router configuration page, and have a valid session token. An attacker gets…

 

Leave a comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.