[1] 吴安彬. 基于链接分析的CSRF检测技术研究[D]. 成都: 电子科技大学, 2016
[2] OWASP. Top 10 - 2010 The Ten Most Critical Web Application Security [EB/OL]. (2010-04-09)[2018-12-31]. http://www.owasp.org.cn/owasp-project/download/2010_OWASP_Top_10
[3] OWASP. Top 10 - 2013 The Ten Most Critical Web Application Security [EB/OL]. (2013-04-23)[2018-12-31]. http://www.owasp.org.cn/owasp-project/download/mobile-top-10-2013-2
[4] Wikipedia. Cross-site request forgery[EB/OL]. [2018-12-31](2018-12-31). https://en.wikipedia.org/wiki/Cross-site_request_forgery
[5] Barth A , Jackson C , Mitchell J C . Robust defenses for cross-site request forgery[C]// Proceedings of the 2008 ACM Conference on Computer and Communications Security, CCS 2008, Alexandria, Virginia, USA, October 27-31, 2008. ACM, 2008
[6] 陈振. CSRF攻击的原理解析与对策研究[J]. 福建电脑, 2009, 25(6): 28-29
[7] 郑新新. CSRF攻击与防御技术研究[D]. 北京: 北京邮电大学, 2016
[8] OWASP. The BodgeIt Store[EB/OL]. [2018-01-17](2018-12-31). https://github.com/psiinon/bodgeit
[9] 黄俊, 程绍银, 蒋凡. 基于指令集随机化的XSS检测和防御系统[J].电子技术, 2014(4): 8-11