ASP.NET Core Security: Preventing CSRF and XSRF Attacks
Learn to secure your ASP.NET Core applications and APIs against Cross-Site Request Forgery using modern antiforgery tokens and defense-in-depth practices.
-
💬
مدرب ذكاء اصطناعي
اسأل عن أي درس واحصل على إجابة واضحة فورًا، في أي وقت. -
🕐
ابدأ في أي وقت
بلا جداول أو مواعيد نهائية — تعلّم بوتيرتك، وقتما يناسبك. -
🌐
بالعربية
الدروس والمهام والشهادة — كل ذلك بلغتك بالكامل.
حول هذه الدورة
Web security is a critical priority for any developer, yet Cross-Site Request Forgery (CSRF/XSRF) remains a common vulnerability that can compromise user accounts and data. Understanding how to block these unauthorized commands is essential for building trustworthy web applications. In this comprehensive text-based course, you will learn how to implement robust defense mechanisms in ASP.NET Core. You will progress from understanding the mechanics of a CSRF attack to configuring built-in antiforgery validation for both traditional MVC forms and modern API endpoints. What you'll learn: Understand the core concepts of CSRF and XSRF vulnerability mechanics; Configure automatic and manual antiforgery token validation in ASP.NET Core; Implement secure cookie attributes including SameSite, HttpOnly, and Secure; Handle antiforgery tokens in modern JavaScript clients for secure API requests; Apply defense-in-depth strategies with custom security headers and CORS policies; Troubleshoot common validation errors and token mismatch issues during development. The course begins with foundational web security concepts and threat modeling, then guides you through step-by-step configuration of antiforgery middleware, and concludes with securing modern web architectures. This course is designed for beginner-to-intermediate web developers looking to fortify their applications. No prior security experience is required, though a basic familiarity with C# and web concepts is helpful. Start reading today to master essential ASP.NET Core security practices and protect your users from malicious exploits.
ما الذي ستحصل عليه
-
📜
شهادة إتمام
أضفها إلى ملفك على LinkedIn -
💬
مدرّس AI شخصي
عالق في دورة؟ اسأل مدرّسك المدمج أي شيء، في أي وقت. -
🎧
النسخة الصوتية مضمَّنة
تعلَّم أثناء تنقُّلك — دون شاشة -
♾️
وصول مدى الحياة
عُد متى شئت، بلا انتهاء -
📱
الهاتف أو الكمبيوتر
يعمل في أي مكان وعلى أي جهاز -
💸
استرداد خلال 14 يومًا
دون أسئلة -
⚡
قصير ومركَّز
3 ساعة من المحتوى التطبيقي
المراجعات
لا توجد مراجعات بعد — كن أول من يشارك تجربته.
المتعلمون أخذوا أيضًا
🎓 بشهادة
تصميم تطبيقات.NET Core MVC مع هندسة نظيفة
شهادة
تطبيق عملي
$49.99
→
🎓 بشهادة
تطوير الواجهة البينية الأساسية للويب ASP.NET: بناء خدمات آمنة RESTful
شهادة
تطبيق عملي
$49.99
→
🔥 مطلوب
🎓 بشهادة
تطوير تطبيقات التجارة الإلكترونية كاملة المكدس باستخدام Blazor WebAssembly و .NET
شهادة
تطبيق عملي
$49.99
→
🔥 مطلوب
🎓 بشهادة
تطوير الويب باستخدام Wix و Velo: بناء موقع لوحة وظائف
شهادة
تطبيق عملي
$49.99
→
الأسئلة الشائعة
ما الذي أحتاجه لأخذ هذه الدورة؟ +
يكفي هاتف أو كمبيوتر متصل بالإنترنت. بدون تثبيتات أو أجهزة خاصة.
كيف يمكنني الدفع؟ +
بالبطاقة عبر Stripe. لا نخزن بيانات البطاقة — يتولى Stripe ذلك بأمان.
هل يمكنني استرداد المال؟ +
نعم — استرداد كامل خلال 14 يومًا، دون أسئلة.
إلى متى يستمر وصولي؟ +
إلى الأبد. بمجرد الشراء، الدورة لك تعود إليها متى شئت.
هل سأحصل على شهادة؟ +
نعم. عند الإتمام ستحصل على شهادة يمكنك إضافتها إلى ملفك في LinkedIn.
مصمَّم للعاملين في
التقنية
التصميم
المالية
التسويق
الرعاية الصحية
التعليم
الضيافة
التصنيع
×2
اشحن مرة واحدة وادفع النصف
أضف $100 واحصل على 200 رصيد، بحيث تكلف كل دورة حوالي $12.50. لا تنتهي صلاحية الأرصدة أبداً.
$100
200 رصيد
$12.50 / دورة
أفضل قيمة
$250
550 رصيد
$11.36 / دورة
$500
1200 رصيد
$10.42 / دورة
الرصيد يصلح لأي دورة ولا ينتهي.