logo logo

What is Cross-Site Request Forgery (CSRF)

A knowledgebase Article
Last updated: 2025-01-14

What is Cross-Site Request Forgery (CSRF)?

CSRF is an attack that forces a user’s browser to execute unwanted actions on a web application in which they are authenticated. Attackers exploit the trust a website has in a user’s browser.

Prevention Techniques:

  • Use anti-CSRF tokens in forms and requests.
  • Verify the origin and referer headers of requests.
  • Enforce same-site cookie attributes.
  • Use Multi-Factor Authentication for sensitive actions.

CSRF can result in unauthorized transactions, data changes, or account compromise if not mitigated.

Other articles in this Category

  • Overview
  • What is a DDoS Attack
  • What is a WAF
  • What is a CDN
  • Explore 28 others
  • Get Started Now, It's Completely Free

    Boost your website's security and performance—begin your journey with Vecurity today.