Back to directory
WRITEUP #4944

Bypass SameSite Cookies Default to Lax and get CSRF

CSRFSamesite cookie bypass
by@RenwaX23(Renwa)
Program
-
Published
Jan 8, 2020
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://medium.com/@renwa/bypass-samesite-cookies-default-to-lax-and-get-csrf-343ba09b9f2b
RELATED WRITEUPS
Basic HTTP Authentication Risk: Uncovering pyspider Vulnerabilities
XSSReflected XSS
CSRF Bypass Using Domain Confusion Leads To ATO
CSRFAccount takeover
Vulnerabilities in Homepage Dashboard
RCESSRF
AI Under Siege: Discovering and Exploiting Vulnerabilities
AI / LLMAI
How Almost Sacrificing a University Group Project led to a Microsoft Bug Bounty
XSSCSRF

Built with ❤️ by Shubham Rawat