DEV Community

Discussion on: CORS, XSS and CSRF with examples in 10 minutes

Collapse
 
gergelypolonkai profile image
Gergely Polonkai

CSRF can also be prevented by using same-site cookies. Here is a nice article on the subject (although, despite the postʼs title, CSRF is definitely not dead, as it works only in modern(ish) browsers).