Video: Bypassing phpNuke 8.x Referer Check Anti-CSRF Defense

[View Online | Download]

Description: This demo proves that simply validating hostname in HTTP Referer, a widely deployed quick anti-csrf defense, can easily be bypassed.

Popular posts from this blog

SSL Breacher - Yet Another SSL Test Tool

TinyBrowser (TinyMCE Editor Plugin) 1.41.6 <= Multiple Vulnerabilities

Elgg 1.7.10 <= | Multiple Vulnerabilities