4 ms·
The conclusion of this discussion seems to be that "SameSite" cookies should be used to help preventing CSRF. https://www.igvita.com/2016/08/26/stop-cross-site
by steffenweber 10y ago
The conclusion of this discussion seems to be that "SameSite" cookies should be used to help preventing CSRF.
https://www.igvita.com/2016/08/26/stop-cross-site-timing-attacks-with-samesite-cookies/ https://www.igvita.com/2016/08/26/stop-cross-site-timing-att...