The OWASP Top Ten and ESAPI – Part 6 – Cross Site Request Forgery (CSRF): "No Gravatar

This article will describe how to protect your J2EE application from Cross Site Request Forgery (CSRF/XSRF) attacks using ESAPI. As with all of the detail articles in this series, if you need a refresher on OWASP or ESAPI, please see the intro article The OWASP Top Ten and ESAPI.

(Via John Melton Blog.)