nickg
01/23/2023, 4:16 PMMatt Jones
01/23/2023, 4:40 PMsunnispoon
01/23/2023, 4:47 PMnickg
01/23/2023, 4:49 PMnickg
01/23/2023, 4:50 PMMatt Jones
01/23/2023, 4:58 PMnickg
01/23/2023, 5:30 PMEvil Ware
01/23/2023, 6:02 PMnickg
01/23/2023, 6:09 PMEvil Ware
01/23/2023, 6:35 PMtattva5
01/23/2023, 6:36 PMCGI.HTTP_REFERER which can be spoofed of course but it's an easy way to enforce the originating page coupled with a authentication session/client variable... you could hash a bunch of the client browser fingerprint to create a unique hash and then test for that hash on the second page too... so many ways to skin this catnickg
01/23/2023, 6:40 PMnickg
01/23/2023, 6:42 PMnickg
01/23/2023, 6:43 PMEvil Ware
01/23/2023, 7:05 PMnickg
01/23/2023, 7:08 PMEvil Ware
01/23/2023, 7:14 PMnickg
01/23/2023, 8:21 PMEvil Ware
01/23/2023, 8:22 PMnickg
01/23/2023, 8:23 PM