
Episode 28: Surfin' with CSRFs
Critical Thinking - Bug Bounty Podcast
00:00
How to Change Your Post Request to Get Request
The base element really has me wondering how much of HTML is strictly enforced to what the spec says it should be. Yeah, I'm sure there's tons, just more and more ton cover. The other couple of other little things I had here, obviously, making sure you're changing your post request to get request. And then so the other thing that he kind of wanted to mention was sometimes they'll companies will do sneaky stuff, like check the origin header and check the refer header to ensure for their C surf checks.
Transcript
Play full episode