Acronym for Cross-Site Request Forgery—tricking users into performing unwanted actions.
CSRF stands for Cross-Site Request Forgery. See 'Cross-Site Request Forgery' for the full definition. Modern web frameworks typically include CSRF protection, but it must be properly implemented.
Why It Matters
The DSC Perspective:
CSRF protection should be standard in any web application that maintains user sessions. If developing applications, ensure your framework's CSRF protections are enabled and correctly configured.
