基於Token的WEB後臺認證機制html
http://www.cnblogs.com/xiekeli/p/5607107.html跨域
深刻理解OAuth2.0協議
http://blog.csdn.net/seccloud/article/details/8192707cors
理解OAuth 2.0
http://www.ruanyifeng.com/blog/2014/05/oauth_2_0.htmlxss
總結 XSS 與 CSRF 兩種跨站攻擊
https://blog.tonyseek.com/post/introduce-to-xss-and-csrf/#id4post
淺談 XSS & CSRF
http://www.jianshu.com/p/dda0c97967a5.net
oauth2.0 小結
http://mranderson.me/?p=36csrf
跨域資源共享 CORS 詳解
http://www.ruanyifeng.com/blog/2016/04/cors.htmlhtm