site image
Andrew Lock avatar

Andrew Lock

CSRF
  1. Loading...
  2. Sponsored by Dometrain Courses—Get 30% off Dometrain Pro with code ANDREW30 and access the best courses for .NET Developers

    30% off with code ANDREW30 on Dometrain Pro
  3. ASP.NET Core in Action, Third Edition

    My new book ASP.NET Core in Action, Third Edition is available now! It supports .NET 7.0, and is available as an eBook or paperback.

  4. Banner image for Automatic CSRF protection based on Fetch Metadata headers

    Automatic CSRF protection based on Fetch Metadata headers

    Exploring the .NET 11 preview - Part 6

    In this post I describe the new Cross-Site Request Forgery protection added to ASP.NET Core that uses Fetch Metadata HTTP headers instead of antiforgery tokens…

     in  ASP.NET CoreSecurityCSRFCORS
  5. Banner image for Understanding the Fetch Metadata HTTP headers: Sec-Fetch-Site and friends

    Understanding the Fetch Metadata HTTP headers: Sec-Fetch-Site and friends

    In this post I describe the Fetch Metadata HTTP headers like Sec-Fetch-Site and Sec-Fetch-Mode which give information to a server about the context of a request…

     in  ASP.NET CoreSecurityCSRFCORS
  6. Banner image for Form binding in minimal APIs

    Form binding in minimal APIs

    Exploring the .NET 8 preview - Part 7

    In this post I discuss the new form binding support for minimal APIs, the current limitations and rough edges, and how to work with antiforgery tokens…

  7. Banner image for Supporting legacy browsers and SameSite cookies without UserAgent sniffing in ASP.NET Core.

    Supporting legacy browsers and SameSite cookies without UserAgent sniffing in ASP.NET Core.

    In this post I explore one way to get ASP.NET Core Identity SameSite cookies working with both legacy and modern browsers…

     in  AuthCSRFASP.NET Core Identity
  8. Banner image for Understanding SameSite cookies

    Understanding SameSite cookies

    In this post I discuss SameSite cookies, what they are, why they're useful, and the limitations when you use them.…

     in  AuthCSRF
  9. Banner image for Making authenticated cross-origin requests with ASP.NET Core Identity

    Making authenticated cross-origin requests with ASP.NET Core Identity

    In this post I describe how to make authenticated cross-origin requests from the browser to an app using ASP.NET Core Identity.…

Andrew Lock | .Net Escapades
Want an email when
there's new posts?