Auto submit (onload) a HTML Form with an input field called 'submit' - CSRF PoC November 5, 2013 in appsec Creating a auto submit (body onload) form when an input button called submit exists. Very common CSRF exploit PoC. Continue reading
Apache Archiva Multiple XSS & CSRF Vulnerabilities May 30, 2011 in security research, appsec, apache archiva Multiple XSS and CSRF issues in Apache Archiva version 1.3.4. Disclosure blogpost. Continue reading