6.2 CSRF

We've all heard about CSRF, or Cross Site Request Forgery, but what is it exactly? And how can we fight it? In this lesson we create a small and vulnerable mockup of a bank web service, and then we'll use it to run CSRF attacks against. And then, of course, we'll dive into the workings of defenses against CSRF.