[cap-talk] solve CSRF by making references unforgeable, not unshareable

John Carlson john.carlson3 at sbcglobal.net
Wed Mar 25 11:30:59 EDT 2009

> This insight leads us to propose the following aphorism: Solve CSRF
> attacks by making references unforgeable, not by making them
> unshareable.

Wouldn't making SQL queries unforgeable solve the SQL injection  

Seems like a common thread.

