X
X
xxx44yyy2019-07-09 08:06:45
Ruby on Rails
xxx44yyy, 2019-07-09 08:06:45

How do I know that the ajax request definitely came from my site, and not someone is trying to call it from their own machine?

How do I know that the ajax request definitely came from my site, and not someone is trying to call it from their own machine?
Those. I suppose somewhere in the request you can check, but will this be a normal way?

Answer the question

In order to leave comments, you need to log in

1 answer(s)
A
Andrew, 2019-07-09
@xxx44yyy

  • Cross Site Request Forgery
  • Cross-Site Request Forgery (CSRF) in RoR
  • https://samuelmullen.com/articles/csrf-protection-...
  • CSRF vulnerabilities are still relevant

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question