Cross-Site Request Forgery Attack

Noun · Security & Infosec

Definitions

  1. Cross-Site Request Forgery Attack is an attack technique in which an adversary causes a victim browser to send an authenticated request the user did not intend. Defenders analyze it to understand prerequisites, affected trust boundaries, and likely telemetry, then reduce risk with layered controls such as validation, hardening, rate limits, segmentation, and high-quality logging for investigation and response.

    In plain English: Cross-Site Request Forgery Attack is a way attackers abuse systems or trust relationships, and defenders counter it with better design, validation, monitoring, and layered controls.

    Example: "During the assessment, the team simulated Cross-Site Request Forgery Attack against a staging service, confirmed the weakness with logs and telemetry, and then added tighter validation, safer defaults, and monitoring so the same technique would trigger an alert in production."

Related Terms