Q and A on cross site request forgeries and breaking into sessions. It's one of the attacks that XSS enables and the attack of the future. For Session, fixations, hijacking, lockout, replay, session riding etc....
yes and no teh inpuds forms haz no secure wen c0de is nothing from securities eh?. But not sure about tho, but I know is it based on CEESURFING somhow.