News Feed
Sections




News Archive
Looking for more information on how to do PHP the right way? Check out PHP: The Right Way

Reddit.com:
Protecting against attack?
May 18, 2012 @ 10:19:35

In this recent post to Reddit.com, the question of application security is asked - the poster wants recommendations on how he should keep his app safe from would-be attackers:

I can code fairly well in PHP these days, but my security isn't so hot. Is there a tutorial or plugin you guys can recommend as to how I should be protecting my php pages/inputs? I want to avoid common attacks like XSS, inputs with NULL or DROP TABLE etc?

Responses on the post include recommendations related to:

  • Using the Chorizo scanner to find common issues in your code
  • Using PDO for database connections (with bound parameters)
  • Not trusting "$_SERVER"
  • Data sanitization

There's also links to a few other resources with more details.

0 comments voice your opinion now!
security attack opinion xss pdo validate filter


blog comments powered by Disqus

Similar Posts

Secunis.com: Travelsized CMS index.php Cross-Site Scripting Vulnerabilities

PHP.net: New Supported Versions Timeline Page

Codewalkers.com: New Tutorial - Coding \"Best Practices\" - or at least \"Better Practices\"

Brian Swan's Blog: What's the Right Way to Prevent SQL Injection in PHP Scripts?

Robert Peake\'s Blog: Zen-Cart <= 1.2.6d Security Fix


Community Events

Don't see your event here?
Let us know!


community extension introduction podcast api conference application voicesoftheelephpant version opinion release interview library php7 performance laravel series example framework symfony2

All content copyright, 2015 PHPDeveloper.org :: info@phpdeveloper.org - Powered by the Solar PHP Framework