Protection against suspicious data, PHP Web Programming

Input values embedded in SQL statements should be screened for inappropriate characters that can form the basis so-called SQL Injection attacks, a type of security attack that may undermine the SQL statements your PHP code executes.  The built-in PHP function mysql_real_escape_string can help to replace such inappropriate strings with safe input.  Refer to the IT 202 manual index for the use of this function.  Note also the reference in the manual to the Mitre security threat analysis.  The mysql_real_escape_string function transforms the input data it is applied to and the new data is then used for the database interaction.  If the original data was not suspicious, there will be no affect; the changes only affect inappropriate input characters.  Honor's students must use prepared statements.

Posted Date: 3/29/2013 6:14:16 AM | Location : United States







Related Discussions:- Protection against suspicious data, Assignment Help, Ask Question on Protection against suspicious data, Get Answer, Expert's Help, Protection against suspicious data Discussions

Write discussion on Protection against suspicious data
Your posts are moderated
Related Questions
SEO FOR EXISTING WEBSITE We are in search of an expert who will do the SEO for an existing website. The website is hosted in a third party server not ours. The client wants his

ASP.NET Developers / Programmers I need experienced in ASP.NET 2.0/3.5 technologies a) Must have Strong knowledge in C# and VB .net. WPF, WCF, AJAX, Linq b) Strong databas

A rollover image is an image whose display modify while the pointer passes ("rolls") over it. You will employ Dreamweaver's Insert Rollover Image command to produce three rollover

I need help in ERP/Manufacturing Website Seeking an internal-use ERP/Manufacturing Website developed for use at a Paper Mill. Modules/areas would comprising Customers, Sales Ord

I am looking for a good programmer to work with my graphic design/illustrator on my team to actively blend animation with gameplay and create a fun, simple and easy, 2d iPhone gam

Now let us get a grip on how to interactivity add to your web documents by way of the tag. Along this tag you can add to your web pages as a guestbook, surveys, order

As we are establishing a new Magento site with several large extensions involved, this job is to resolve the various unexpected issues that can occur during set up and testing. As

PHP Front End Developers - V Portal Seeking a PHP front-end web developer familiar with API to develop web application. Project comprises creating functions following the MVC

This is a property of the document object. It corresponds to an HTML input form constructed from the FORM tag. A form can be submitted through calling the JavaScript submit method

The field size attribute determines the width of the displayed field. The maxlength attribute sets a limit on the maximum number of characters that can be typed in the field (whic