Not sure about "sleeping giant". CSRF is routinely used to exploit
home ADSL routers, with requests of the form
http://192.168.2.1/firewall.cgi?disable. With a trivial extra image you can also pick up the exploited user's public IP address.
Copyright © 2017, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds