CSRF y go

Espada del Califa Umar

Igual A Modern Approach to Preventing CSRF in Go es excesivamente técnico y sobre algo muy concreto, pero quería dejarlo guardado porque nunca se sabe qué se puede necesitar en algún momento futuro.

Have we finally reached the point where CSRF attacks can be prevented without relying on a token-based check (like double-submit cookies)? Can we build secure web applications without bringing in third-party packages like justinas/nosurf or gorilla/csrf?

And I think the answer now may be a cautious “yes” — so long as a few important conditions are met.

 Date: September 29, 2026
 Categories:  seguridad
 Tags:  seguridad lenguajes CSRF

Previous
⏪ Los atajos salen caros, también en defensa.