Cross-Site Request Forgery countermeasures can be greatly simplified using request metadata provided by modern browsers.| words.filippo.io
With Carrots & Sticks - Can the browser handle web security?| Frederik Braun