Cross-Site Request Forgery (CSRF) Security Fundamentals
Learn how to detect, prevent, and mitigate CSRF vulnerabilities in modern web applications using industry-standard defense-in-depth strategies.
-
💬
مدرب ذكاء اصطناعي
اسأل عن أي درس واحصل على إجابة واضحة فورًا، في أي وقت. -
🕐
ابدأ في أي وقت
بلا جداول أو مواعيد نهائية — تعلّم بوتيرتك، وقتما يناسبك. -
🌐
بالعربية
الدروس والمهام والشهادة — كل ذلك بلغتك بالكامل.
حول هذه الدورة
Web security is a critical priority, yet vulnerabilities like Cross-Site Request Forgery (CSRF) continue to put user data and application integrity at risk. This comprehensive, text-based course guides you through the mechanics of CSRF attacks, helping you identify risks and implement robust, modern defenses in your web applications. \n\nWhat you'll learn: \n- Understand the core mechanics of how a CSRF attack exploits browser trust and session cookies \n- Identify vulnerable endpoints and predict potential attack vectors in web applications \n- Implement robust defense mechanisms, including anti-CSRF tokens and custom request headers \n- Leverage modern browser security features like SameSite cookie attributes to mitigate risks \n- Analyze real-world scenarios and practice identifying secure vs. insecure code patterns \n- Apply defense-in-depth principles to secure modern APIs and state-changing requests \n\nYou will start with the fundamental concepts of web requests, cookies, and session management before moving into step-by-step breakdowns of CSRF exploits and modern, industry-standard mitigation techniques. Written exercises and conceptual quizzes throughout the text will help solidify your understanding of these critical security practices. \n\nThis course is designed for beginner web developers, software engineers, and security enthusiasts who want to build secure web applications from scratch. No prior security experience is required. \n\nStart reading today to secure your web applications against unauthorized state-changing requests.
ما الذي ستحصل عليه
-
📜
شهادة إتمام
أضفها إلى ملفك على LinkedIn -
💬
مدرّس AI شخصي
عالق في دورة؟ اسأل مدرّسك المدمج أي شيء، في أي وقت. -
🎧
النسخة الصوتية مضمَّنة
تعلَّم أثناء تنقُّلك — دون شاشة -
♾️
وصول مدى الحياة
عُد متى شئت، بلا انتهاء -
📱
الهاتف أو الكمبيوتر
يعمل في أي مكان وعلى أي جهاز -
💸
استرداد خلال 14 يومًا
دون أسئلة -
⚡
قصير ومركَّز
2 ساعة 54 دقيقة من المحتوى التطبيقي
المراجعات
لا توجد مراجعات بعد — كن أول من يشارك تجربته.
المتعلمون أخذوا أيضًا
💼 جاهز لسوق العمل
🎓 بشهادة
أساسيات برمجة PHP: تعلم تطوير الواجهة الخلفية الحديثة
شهادة
تطبيق عملي
$14.99
→
🔥 مطلوب
🎓 بشهادة
Python و Django: بناء نظام إدارة موظفين قائم على الويب
شهادة
تطبيق عملي
$14.99
→
🔥 مطلوب
🎓 بشهادة
مبادئ تطوير الويب والأمن السيبراني
شهادة
تطبيق عملي
$14.99
→
🏆 الأكثر شعبية
🎓 بشهادة
تطوير شبكة الإنترنت الكاملة: بناء تطبيقات العالم الحقيقي
شهادة
تطبيق عملي
$14.99
→
الأسئلة الشائعة
ما الذي أحتاجه لأخذ هذه الدورة؟ +
يكفي هاتف أو كمبيوتر متصل بالإنترنت. بدون تثبيتات أو أجهزة خاصة.
كيف يمكنني الدفع؟ +
بالبطاقة عبر Stripe. لا نخزن بيانات البطاقة — يتولى Stripe ذلك بأمان.
هل يمكنني استرداد المال؟ +
نعم — استرداد كامل خلال 14 يومًا، دون أسئلة.
إلى متى يستمر وصولي؟ +
إلى الأبد. بمجرد الشراء، الدورة لك تعود إليها متى شئت.
هل سأحصل على شهادة؟ +
نعم. عند الإتمام ستحصل على شهادة يمكنك إضافتها إلى ملفك في LinkedIn.
مصمَّم للعاملين في
التقنية
التصميم
المالية
التسويق
الرعاية الصحية
التعليم
الضيافة
التصنيع