Get the latest tech news

CSRF protection without tokens or hidden form fields


A couple of months ago, I received a request from a random Internet user to add CSRF protection to my little web framework Microdot, and I thought it was a fantastic idea.When I set off to do this…

None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of tokens

tokens

Photo of CSRF protection

CSRF protection

Photo of hidden form fields

hidden form fields

Related news:

News photo

Thiel-Backed Crypto Hoarder ETHZilla Sells Tokens to Pay Debt

News photo

Crypto hoarders dump tokens as shares tumble

News photo

Invisible npm malware pulls a disappearing act – then nicks your tokens