Definition. CSRF (Cross-Site Request Forgery) is an attack that forces authenticated users to send a request to a Web application to which they are already authenticated. CSRF attacks take advantage of a Web application's trust in a logged-in user.
A successful CSRF attack has the potential to be disastrous for both the organisation and the user. Client relationships may be harmed, funds transferred without authorization, passwords changed, and data taken, including session cookies.
In a successful CSRF attack, the attacker makes the victim user accidentally do an action. This could be to update their account's email address, reset their password, or make a money transfer, for example.
CSRF can be avoided by using a hidden field to create a unique token that is transmitted in the body of the HTTP request rather than in the URL, which is more vulnerable to disclosure. To protect against CSRF, the user must be forced to re-authenticate or prove that they are users. Take, for instance, CAPTCHA.
A successful CSRF attack has the potential to be disastrous for both the organisation and the user. Client relationships may be harmed, funds transferred without authorization, passwords changed, and data taken, including session cookies.
Learner's Ratings
4.5
Overall Rating
80%
7%
5%
1%
7%
Reviews
P
Piyush kumar
5
I like this and this course is my dream
A
anup
5
sir ji ager iska use apne friend per kare
M
Muhammad Hussnain
4
thanks
N
Niamat Afghan
5
tnx learning and allow this app and website in pakistan and afghanistan
I
imran
5
Thanks You
A
Abdul Matin
5
I want to work on ethical hacking
S
Soni Sharma
5
Sar aapane Jo Jo topic padhaayaa Hai vah sab topic mein yad kaise rakhun uska note banana hoga Kya uska koi note s vagaira nahin Hai
N
Nitendra kanaujia
5
disk drive detect nhi ho rhi ha iska solution kya ha ? pls explain
P
pavan sunitha
5
thank you
M
Mohammad Arsalaan khan
5
I am unable to run kali linux in virtual box manager..plz help me out ..
Show More
Recommended Courses
Cyber Forensics Masterclass with Hands on learning
Share a personalized message with your friends.