首页>
外国专利>
PREVENTION OF CROSS SITE REQUEST FORGERY ATTACKS
PREVENTION OF CROSS SITE REQUEST FORGERY ATTACKS
展开▼
机译:防止跨站点请求伪造攻击
展开▼
页面导航
摘要
著录项
相似文献
摘要
A method is provided for preventing cross-site request forgery (CSRF) attacks at a server that includes embedding a hidden cryptographic nonce in a response from a server to a client that is authorized to access the server. The response with the hidden cryptographic nonce is sent to the client. A subsequent request is received from the client. The subsequent request is validated or otherwise verified if it includes a hidden cryptographic nonce that matches the hidden cryptographic nonce embedded in the response from the server.
展开▼