This is part five in a list of articles in which I'm detailing the OWASP Top 10 vulnerabilities. (see intro)What is Cross-Site Request Forgery? Cross-Site Request Forgery, one-click attack, session riding or XSRF is an attack whereby unauthorised commands are transmitted from a user that exploits the trust that a site has in a user's browser. This is also known as a confused deputy attack against a browser. The "deputy" is the user's Web browser which is confused into misusing a user's authority at an attacker's direction.Basically,...

Twitter Delicious Facebook Digg Stumbleupon Favorites More