Toggle navigation
WebSec Q&A
Email or Username
Password
Remember
Login
Register
|
I forgot my password
Questions
Unanswered
Tags
Categories
Users
Ask a Question
How are the login forms protected? (Lecture 3)
0
votes
Hello,
Are login forms also protected with CSRF tokens, or is some other mechanism typically used?
Thanks in advance!
asked
May 4, 2025
in
General/Lecture/Exam
by
anonymous
edit history
answer
comment
Your comment on this question:
Your name to display (optional):
Email me at this address if a comment is added after mine:
Email me if a comment is added after mine
Privacy: Your email address will only be used for sending these notifications.
Add comment
Cancel
Your answer
Your name to display (optional):
Email me at this address if my answer is selected or commented on:
Email me if my answer is selected or commented on
Privacy: Your email address will only be used for sending these notifications.
Add answer
Cancel
1
Answer
0
votes
Yes, they should typically be protected via CSRF tokens.
Against brute-force attacks on the login form, there are typically rate-limits and/or captchas.
answered
May 6, 2025
by
Jost Rossel
(
2.3k
points)
edit history
ask related question
comment
Your comment on this answer:
Your name to display (optional):
Email me at this address if a comment is added after mine:
Email me if a comment is added after mine
Privacy: Your email address will only be used for sending these notifications.
Add comment
Cancel