发明名称 CROSS-SITE REQUEST FORGERY PROTECTION
摘要 A cross-site request forgeries (CSRF) protection system helps protect against cross-site request forgeries attacks. A CSRF protector is arranged to receive a signal from a service provider that notifies a browser running on a potential victim consumer machine to selectively permit and/or deny cross-site requests in accordance with a set of one or more security policies. The policies can be selected and applied on a domain name basis, IP address basis, trusted zone basis, and combinations thereof. The CSRF protector can also provide a context of the event that triggers a request that contains a cross-site request, where the context provides indicia of circumstances that indicate a likelihood of a cross-site request forgery is being attempted.
申请公布号 WO2014078441(A2) 申请公布日期 2014.05.22
申请号 WO2013US69928 申请日期 2013.11.13
申请人 HANSEN, ROBERT 发明人 HANSEN, ROBERT
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址