Posts

CSRF & Synchronizer Tokens

Image
What is Cross-site request forgery (CSRF) First time we heard (CSRF) whats that ???? Cross site request forgery i s    one-click attack or session riding and abbreviated as CSRF or  XSRF    is a kind  of malicious code running or else  exploits  of a  web-p ages  is that  unauthorized commands can be   transmitted from a  user  that who using the   web application and  trusts it. Above picture will show you the basic idea about how it works                           I n the CSRF there are  so many ways in which a malicious thing  can be happens to website or web-pages which  can be transmitted by using commands from ;  JavaScript XMLHttpRequests,  specially-crafted image tags its mean specially SVG images so many of malware au...

What Is OAuth Technology?

Image
W hat is Oauth    oauth is the   O pen Auth orization and    is an open standard for token  -based a uthentication  and   on the Internet. OAuth ??? How to pronounced   "oh-auth" OAuth   which is a llows an end user's account information to be used by third-party services, such as Facebook , without exposing the user's password. Oath acts as an intermediary on behalf of the end user, providing the service with an access token  that authorizes specific account information to be shared. The process for obtaining the token is called a flow . Generally, Oath provides to clients a "secure delegated access" to server resources on behalf of a resource owner. It specifies a process for resource owners to authorize third-party access to their server resources without sharing their credentials. Designed specifically to work with HYPER TEXT TRANSFER PROTOCOL  (HTTP), Oath essentially allo...