NameSilo

Sql security

Spaceship Spaceship
Watch

Joe

VIP Member
Impact
48
hi
i've been talking to people
*ahem*SV and Scoot*ahem*
and i believe that my sql database can be hacked.
is it possible to make it more secure
and also, what is this 'mysql_real_escape_string' and how do i use it?

thanks

Joe
 
0
•••
The views expressed on this page by users and staff are their own, not those of NamePros.
Unstoppable DomainsUnstoppable Domains
mysql_real_escape_string -- Escapes special characters in a string for use in a SQL statement. This function must always (with few exceptions) be used to make data safe before sending a query to MySQL.

More information: http://www.php.net/mysql_real_escape_string
 
0
•••
You don't really need to use mysql_real_escape_string for passwords that are hashed in md5, because md5 hases will never have ' or "

The manual entry for mysql_real_escape_string is pretty self explanatory, If you want some more advanced functions check out the user comments too.
 
0
•••
ok ty bay and Scott ;)
some very helpful advice
*reads comments*

Joe
 
0
•••
Dynadot — .com Registration $8.99Dynadot — .com Registration $8.99
Appraise.net

We're social

Unstoppable Domains
Domain Recover
DomainEasy — Live Options
  • The sidebar remains visible by scrolling at a speed relative to the page’s height.
Back