Re: Avoiding SQL injections: htmlentities() ?
| From: | Ryan A | Date: | Sun, 27 Mar 2005 13:10:41 +0000 |
| Subject: | Re: Avoiding SQL injections: htmlentities() ? | ||
| Groups: | php.general | ||
| Request: | Send a blank email to php-general+get-211651@lists.php.net to get a copy of this message | ||
Hey!
Thanks for replying.
I was just going to write to you (after your last reply to my questions)
that someone recommended your site and after i made a quick visit...if you
could direct me to the exact page/section...guess you read my mind :-D
Thanks,
Ryan
On 3/26/2005 7:47:36 PM, Chris Shiflett (shiflett@php.net) wrote:
> Chris Ramsay wrote:
>
> > This is excellent:
>
> >
>
> > http://www.shiflett.org/
>
>
>
> I'm glad you think so. :-)
>
> There's a free article there on SQL
> injection:
>
>
>
> http://shiflett.org/articles/security-corner-apr2004
>
>
>
> I'm always refining the methods in which I explain things like SQL
> injection, so my replies on this thread might be as good or better than
> that article. The article also has user comments at the bottom, so you
> might find something useful there also.
>
> Hope that helps.
>
> Chris
>
> --
> Chris Shiflett
> Brain Bulb, The PHP Consultancy
> http://brainbulb.com/
--
No virus found in this outgoing message.
Checked by AVG Anti-Virus.
Version: 7.0.308 / Virus Database: 266.8.3 - Release Date: 3/25/2005