Video: Bypassing phpNuke 8.x Referer Check Anti-CSRF Defense

Description: This demo proves that simply validating hostname in HTTP Referer, a widely deployed quick anti-csrf defense, can easily be bypassed.

