Skip to content

Experimental demo of anti-CSRF implementation in TYPO3 extensions

License

Notifications You must be signed in to change notification settings

aaw-team/csrfdemo

Repository files navigation

TYPO3 extension "csrfdemo"

This is an experimental implementation that is used for demonstration purposes and must not be used in production environments.

It is used to describe:

  • the concept of CSRF attack prevention and token generation/verification
  • a possible integration in extbase action controllers

Security

This code has not been audited by third party. It has been written for demonstration purposes only, but with "best effort" for real-world applications.

If you find a security issue in the code, please report it in the issue tracker (no confidentiality needed).

About

Experimental demo of anti-CSRF implementation in TYPO3 extensions

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages