Generating Secure CSRF Tokens

11 views
Skip to first unread message

Ben Ramsey

unread,
Feb 15, 2013, 12:47:10 PM2/15/13
to nashvi...@googlegroups.com
Continuing our web application security discussion from Jason's talk on Tuesday, I thought this might be interesting to share with everyone:


This post doesn't explain cross-site request forgeries, though. If you're interested in reading more about that, I recommend Chris Shiflett's book Essential PHP Security: http://shop.oreilly.com/product/9780596006563.do

Chris has also posted an article on his website about CSRF: http://shiflett.org/articles/cross-site-request-forgeries

-Ben
Reply all
Reply to author
Forward
0 new messages