Is there a true way (or at least more secure) of determining who sent the request than checking the referer header?

前端 未结 0 579
囚心锁ツ
囚心锁ツ 2020-12-23 22:37

I have been using the referer header server-side to verify an API endpoint, and after a while I thought about it and realized that it can be spoofed. This is a

相关标签:
回答
  • 消灭零回复
提交回复
热议问题