4 ms·
Yes. https://en.m.wikipedia.org/wiki/Cross-origin_resource_sharing https://en.m.wikipedia.org/wiki/Cross-origin_resource_sharin...
by mechanicalpulse 8y ago
Yes. https://en.m.wikipedia.org/wiki/Cross-origin_resource_sharing https://en.m.wikipedia.org/wiki/Cross-origin_resource_sharin...
- austincheney 8y agoCSRF works the same whether the site is served via HTTP or HTTPS. CSRF attacks the server from the client, so HTTPS doesn't protect from this. HTTPS is an end-to-end encrypted tunnel.