https://hackershare.dev/en/bookmarks/642369
CSRF, CORS, and HTTP Security Headers Demystified