CSRF solutions


  • For background information, OWASP has a writeup which describes CSRF.
  • A brief summary of the available CSRF defenses and how they work is maintained here. If you have any updates to the list, or libraries which you feel should be included, please contact me.


CSRF: Not all Defenses are Created Equal is being presented at AppSec USA in November 2013.