Browse by Tag
ajax blog blog archive categories code css database database security databases development exploit flat guitar hosting injection internet javascript Links linux menu mysql MySQL Security network new news oracle password perl mysql php php mysql security programming really simple syndication registerwidget search security select seo server software sql sql injection technology update utf vulnerability web widgetinfo widgetmanager wordpress xmlPHP/MySQL: The Escape Method Done Right
Filed under escape, fired, addslashes, insufficient, warnings, suppress, injection, function, symbols, protect
No, addslashes() is insufficient to protect you from SQL injection attacks (read: these get you fired). Here’s the solution for an escape …
Read the original here:
PHP/MySQL: The Escape Method Done Right
June 28th, 2007. Comment now »
Rails’ friends: Securing MySQL (continued)
Filed under connection, clear, protect, update, config, advice, rails, configuration, database, password
Rails’ database connection We have to update Rails’ database configuration in the project’s config/database.yml file. We have to enter both, the user name and password in the clear, so it is good advice to protect the file from …
Here is the original:
Railsâ?? friends: Securing MySQL (continued)
February 27th, 2007. Comment now »
RSS Full




