Samsung Patches CSRF Issues That Could Allow Hackers to Take Over User Accounts

Samsung Patches CSRF Issues That Could Allow Hackers to Take Over User Accounts

The researcher who found the bugs got a $13,300 bounty

Infographic: How CSRF Attacks Work

Infographic: How CSRF Attacks Work

CSRF is more dangerous than many people think

  • Security
  • By Catalin Cimpanu
  • January 11th, 2016
CSRF Bug in Verizon's API Left My FiOS Accounts Open to Attacks

CSRF Bug in Verizon's API Left My FiOS Accounts Open to Attacks

API used a simple authentication scheme, exposing users to CSRF attacks that allowed third-parties to hijack accounts

Hackers Use Social Engineering to Obtain Facebook Security Tokens

Hackers Use Social Engineering to Obtain Facebook Security Tokens

A security token can be worth as much as a set of credentials

  • Security
  • By Lucian Constantin
  • September 27th, 2010
CSRF Worm Released on Twitter

CSRF Worm Released on Twitter

Critical CSRF Bugs Found in eBox and Snare

Critical CSRF Bugs Found in eBox and Snare

Can lead to full system compromise

Facebook Bug Exposes Users to Dangerous CSRF Attacks

Facebook Bug Exposes Users to Dangerous CSRF Attacks

Patch status undetermined

Gmail Login Gets CSRF Protection

Gmail Login Gets CSRF Protection

A feature that's been missing for a long time

Feasible Client-Side CSRF Token Brute Force Attack Revealed

Feasible Client-Side CSRF Token Brute Force Attack Revealed

Uses three-year-old CSS-based history hack to extract tokens