TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

CSRF is really dead

10 pointsby UkiahSmithover 5 years ago

2 comments

jedbergover 5 years ago
As a website owner, I’m glad to hear this. But I’m still going to do CSRF tokens for the foreseeable future, because it’s going to take <i>a long time</i> before even half of all users are on a browser that is secure by default. And the ones who aren’t on the latest browser are also the least security aware and are most susceptible to cross site forgery.
hdfbdtbcdgover 5 years ago
Does this mean no more csrf tokens?
评论 #20905053 未加载