
No-CSRF
295 users
Version: 0.42
Updated: July 4, 2016

Available in the
Chrome Web Store
Chrome Web Store
Install & Try Now!

NVIDIA RTX 3090 24GB Founders Edition W/Box - Electronics | Color: Silver

Donald Trump Novelty Presidential Toilet Paper

Dnc Workwear Mens Cordura Knee Patch Cargo Pants Comfortable Work 3324, Men's, Size: 132S

DMC 221 Very Dark Shell Pink - 6 Strand Embroidery Floss

Donald Trump 2024 Postcards

Dremel f013ms20jb Moto-Saw ms20-1/5 2-in-1 Compact Scroll Saw (70 W
Cross-Site Request Forgery is a major problem when it comes to browsing the web. If an attacker were to craft a request toward a server that performs an action, the request would contain any identifying cookies you have. As pointed out in academic literature, this can be used to empty bank accounts, change passwords, or anything in between.
This extension attempts to prevent Cross-Site Request Forgery by stripping cookies from any (non-GET) request that does not follow the same-origin policy. In this way, normal browsing remains uninterrupted while any possible CRSF attacks are blocked!
The extension is easily disabled and contains a small report of all requests which had cookies stripped.
This extension is open source and the source code is viewable at https://github.com/brandonio21 /no-csrf
This extension is based on a similar extension by avlidienbrunn
This extension attempts to prevent Cross-Site Request Forgery by stripping cookies from any (non-GET) request that does not follow the same-origin policy. In this way, normal browsing remains uninterrupted while any possible CRSF attacks are blocked!
The extension is easily disabled and contains a small report of all requests which had cookies stripped.
This extension is open source and the source code is viewable at https://github.com/brandonio21 /no-csrf
This extension is based on a similar extension by avlidienbrunn
Related

Ignore Google Scripts
268

Disable Content-Security-Policy
60,000+

Block Cross Domain protection
35

Cross Domain - CORS
50,000+

No Opener, No Phishers
408

Vulners Web Scanner
9,000+

Policy Control - JavaScript and Flash blocker
620

Origin Requests Only (Firewall)
476

Policy Control
424

Cacao CORS Proxy
159

Block Unreachable Scripts
311

Clickjacking Test
3,000+

CounterXSS
407

Scripter debugger extension
167

NoDetour
454

OWASP Penetration Testing Kit
20,000+

Local Cache
523

Xframe Assassin
455

XSS
2,000+

WebAPI Blocker
1,000+

Bishop Vulnerability Scanner
2,000+

Plugin Vulnerabilities
406

Security Tweaks
729

Local-CORS
1,000+