XSRF in a RESTful application

I am an ASP.NET developer trying to learn Rails and RESTful. To understand, I plan to write a mail client that will make a RESTful GET call by the server to send email and POST to send email.

What are the best practices (both general and Rails specific) that should be performed so that the specified application does not detect XSRF vulnerabilities.

+3
source share
1 answer

The Ruby on Rails Security Project has a good position on this.

, Rails 2.0 XSRF. , , . , POST ( -GET) , . , , .

. .

+3

Source: https://habr.com/ru/post/1698967/


All Articles