SameSite Cookies Explained ~ With Examples

  Рет қаралды 9,567

Merrick WebDev

Merrick WebDev

Күн бұрын

Пікірлер: 25
@SENOJKCID
@SENOJKCID 4 жыл бұрын
This is BY FAR the best content on the subject I've seen on the internet.
@alekseev74
@alekseev74 3 жыл бұрын
This is the best explanation of topic on KZbin.
@abeinvarghese8063
@abeinvarghese8063 2 жыл бұрын
Bro.. This was very much informative. Helped me a lot to understand SameSite cookie. Please do more videos on web development and web security
@artemkarnaukh
@artemkarnaukh Жыл бұрын
Very well explained and demonstrated. I also liked a chill music in the background.
@shiyou21401
@shiyou21401 4 жыл бұрын
Thank you for this easy to understand explanation with intuitive examples. Subscribed!
@sukhrajsingh9613
@sukhrajsingh9613 4 жыл бұрын
Great !! Thanks Man, I was thinking of creating this POC from scratch for understanding the concepts.Your video saved my time ;)
@GabrielLogan17
@GabrielLogan17 2 ай бұрын
This issue where one site requests another site's cookie is ok. But what about when I need to send the cookie from a backend to the frontend?
@468hitman
@468hitman Жыл бұрын
best video with practical examples
@AFoulOdor
@AFoulOdor 7 ай бұрын
Very good subject content, thanks for your effort.
@thearduousalchemist2804
@thearduousalchemist2804 Жыл бұрын
Thanks for the simple and clear explanation.
@deusexpersona95
@deusexpersona95 4 жыл бұрын
Extremely well made video. Hope your channel grows
@vimalsuku9452
@vimalsuku9452 3 жыл бұрын
Chrome flags donte have option to disable same site cookies .. hv any alternate option to disable same site cookies
@fooked1
@fooked1 4 жыл бұрын
Best explanation so far!
@rahimlizakir
@rahimlizakir Жыл бұрын
Very helpful, thank you!
@flying-musk
@flying-musk 4 жыл бұрын
Unset is lax( becuz default is lax) Why with we got unset cookie too?
@ExploreTechFaith
@ExploreTechFaith 4 жыл бұрын
some great explanation after 2-3 months search. Another project is using my API's(Post) inside iFrame, now, they are getting CSRF issues. Is there any way to use Strict or Lax when allowing them? or only none is an option?
@merrickwebdev7065
@merrickwebdev7065 4 жыл бұрын
Hey, in your case, your best bet will probably be to set it to samesite:none and secure, and then use a csrf token
@ExploreTechFaith
@ExploreTechFaith 4 жыл бұрын
Merrick WebDev Thankyou for your reply but I am using spring mvc 4.0 with spring security (xml configurations) and I am not getting any options to set “samesite”. I tried in web.xml, spring.xml configurations even server.xml (tomcat 9) but it’s not reflecting.
@xNReaperx
@xNReaperx 4 жыл бұрын
Underrated video!
@drcod3r329
@drcod3r329 4 жыл бұрын
Thank you for the info 😊👍☺️
@Sam-rp4hy
@Sam-rp4hy 4 жыл бұрын
Great work, dude!
@ankgto
@ankgto 4 жыл бұрын
Hey, thank you very much for explaining that topic. But have a little confusion 0:59 you depict domain (web-server) as laptop, and animation shows that it sends cookie to browser multiple times, but in reality cookie sends once from web-server to client(browser) and then client send it to server(website) UPD: when writing that comment realise that all is vice versa)) so its confusing what is server what client =)
@ryanaiden
@ryanaiden 4 жыл бұрын
Couldn’t you manually copy and send the cookies? Even if you had to use Puppetteer or something. I don’t know. Otherwise this video is really great!
@natali1085
@natali1085 3 жыл бұрын
Thanks 👍
@user-jw3bo4vr1v
@user-jw3bo4vr1v 10 ай бұрын
Thanks!!!!1odin
Cookie Stealing - Computerphile
16:12
Computerphile
Рет қаралды 1,1 МЛН
The Best Band 😅 #toshleh #viralshort
00:11
Toshleh
Рет қаралды 22 МЛН
Мясо вегана? 🧐 @Whatthefshow
01:01
История одного вокалиста
Рет қаралды 7 МЛН
HTTP Headers and Cookies
17:38
Zach Gollwitzer
Рет қаралды 97 М.
Cross-Site Request Forgery (CSRF) Explained
11:59
NahamSec
Рет қаралды 27 М.
SameSite cookie | Lax vs Strict cookies
8:21
Jan Goebel
Рет қаралды 6 М.
Cookie recipes - SameSite and beyond
21:27
Chrome for Developers
Рет қаралды 12 М.
Cross-Site Request Forgery (CSRF) Explained
14:11
PwnFunction
Рет қаралды 472 М.
HTTP Cookies Crash Course
1:09:21
Hussein Nasser
Рет қаралды 125 М.
The Same Origin Policy - Hacker History
12:19
LiveOverflow
Рет қаралды 110 М.
HTTP Cookie SameSite Attribute
10:35
F5 DevCentral
Рет қаралды 17 М.
Your App Is NOT Secure If You Don’t Use CSRF Tokens
9:57
Web Dev Simplified
Рет қаралды 138 М.
What is SameSite Cookie Attribute
12:41
Mohd Badrudduja
Рет қаралды 150
The Best Band 😅 #toshleh #viralshort
00:11
Toshleh
Рет қаралды 22 МЛН