[1] 谭彬, 杨明, 梁业裕, 等. Web安全漏洞研究和防范[J]. 通信技术, 2017, 29(4): 795-802
[2] 李鑫. Web安全问题与防范策略分析[J]. 网络安全技术与应用, 2017, 17(10): 31-32
[3] Li Meiyi, Hu Can, Wang Changfei. Analysisand summary for “security performance experiments of Web page and Web site” [C] //Proc of the 2nd Int Conf on Software, Multimedia and Communication Engineering. Pennsylvania: Destech, 2017: 75-78
[4] You Jianxin, Guo Fan. Improved CSRFGuard for CSRF attacks defense on Java EE platform [C] //Proc of Int Conf on Computer Science & Education. Piscataway, NJ: IEEE, 2014
[5] 张炳帅. Web安全深度剖析[J]. 中国信息化, 2019, 6(1): 85-86
[6] 严亚萍,胡勇. 浅析CSRF漏洞检测、利用及防范[J]. 通信技术, 2017, 29(3): 558-564
[7] Rupali D, Kombade B. CSRF vulnerabilities and defensive techniques [C] //Proc of Int Journal of Computer Network and Information Security. Hong Kong: MECS, 2012: 31-37
[8] Lin Xiaoli, Zavarsky P, Ruhl R, et al. Threat modeling for CSRF attacks [C] //Computational Science and Engineering. Piscataway, NJ: IEEE, 2009: 486-491
[9] 叶文全. 基于CORS的AJAX跨域访问研究与应用[J]. 湖北第二师范学院学报, 2018, 15(2): 48-51
[10] 李永毅. 大型分布式web系统的跨域请求方案研究[J]. 长治学院学报, 2018, 36(4): 54-56
[11] Gerardo C, Corrado A V. A set of features to detect web security threats [J]. Journal of Computer Virology and Hacking Techniques, 2016 12(4): 243-261
[12] 陈志伟. 基于渗透测试实例的Web安全研究[J]. 网络安全技术与应用, 2018, 18(11): 39-40