Jump to content

List please? SQL Injections, XSS attacks, etc.


verdrm

Recommended Posts

Can everyone please add ANYTHING you know of to this post regarding SQL injections, XSS/CSS vulnerabilities, JavaScript vulnerabilities etc? I think many of us would appreciate a HUGE list of things to check for when designing a database-oriented website. Add anything you know of below. Thanks!

Here is a very useful class you can use when you are allowing users to freely input a large amount of text that allows HTML and Javascript.

http://htmlpurifier.org/

 

Always make sure to use mysql_real_escape_string() on ALL variables being used in a query.

If you search Google on PHP security topics, you will find plenty of articles.

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.