I think I've found my favorite CSRF prevention strategy; even if XSS happens attackers will have a hard time https://github.com/yoshuawuyts/knowledge/blob/master/architecture/auth.md#sync-token …
4:02 PM - 16 Dec 2015
0 replies
0 retweets
2 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.