We just recently (read, today) implemented SameSite cookies to prevent CSRF attacks. The thing is, while there's a decent amount of information online about the benefits of them, I can't find any other sites that implement them. Not even any of the big ones I would suspect were spearheading something like this, such as Facebook or Google. Didn't this begin as a Chrome project? Is there a reason why they're not in use?
Dani 4,310 The Queen of DaniWeb Administrator Featured Poster Premium Member
rproffitt commented: In the immortal words of Arte Johnson, "Very interesting." +15
Be a part of the DaniWeb community
We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.