← Client-Side Attacks
LabLesson 5 of 5 · 45 min
Lab: the form with no token
PractitionerCSRF
The form with no anti-forgery token
Make a logged-in victim's browser send a state-changing request.
Open the lab →Make a logged-in victim's browser send a state-changing request.
Open the lab →