Maarten Balliauw 1/10/2019

Tracking down action methods that need ValidateAntiForgeryToken using Structural Search and Replace

Read Original

This technical tutorial explains how to use ReSharper's Structural Search and Replace feature to automatically locate ASP.NET MVC Core action methods that accept POST requests but lack the [ValidateAntiForgeryToken] attribute, a critical step in securing an inherited codebase against Cross-Site Request Forgery (CSRF) attacks.

Tracking down action methods that need ValidateAntiForgeryToken using Structural Search and Replace

Comments

No comments yet

Be the first to share your thoughts!

Browser Extension

Get instant access to AllDevBlogs from your browser

Top of the Week

2
Introducing RSC Explorer
Dan Abramov 1 votes
4
Fragments Dec 11
Martin Fowler 1 votes
5
Adding Type Hints to my Blog
Daniel Feldroy 1 votes
6
Refactoring English: Month 12
Michael Lynch 1 votes
8
10
You Gotta Push If You Wanna Pull
Gunnar Morling 1 votes