Computing system for cross-site request forgery attack protection

    公开(公告)号:US12015638B1

    公开(公告)日:2024-06-18

    申请号:US16591699

    申请日:2019-10-03

    摘要: A server agent application receives a uniform resource locator (URL) from a client agent application, the URL including an identifier for a graphical resource. The server agent application determines, based upon the URL, that a third-party application is to provide the graphical resource. The server agent application causes an intermediate application to be launched. The intermediate application requests a webpage from the third-party application, the webpage including a security token for a user session between the client agent application and the third-party application. The intermediate application receives the webpage and constructs a modified URL based upon the URL and the security token included in the webpage. The intermediate application transmits the modified URL to the third-party application, wherein the third-party application causes the client agent application to receive the graphical resource based upon the modified URL.