Pergunta de entrevista da empresa Coupang

How can you bypass CSRF protection?

Respostas da entrevista

Sigiloso

15 de abr. de 2018

Hacking the SSL - That was their answer.

Sigiloso

16 de jul. de 2018

To not be confused, the question was how to bypass double cookie submit as CSRF mitigation. The answer - one possible way is to leverage non SSL protected webpage on the same domain to preset the cookie value.