Jump to content
gafi

Cum evitati atacurile de tip XSS & SQLI

Recommended Posts

Posted

Sunt curios cum ce metode folositi pentru a evita un atac de tip XSS + SQLI. Eu folosesc htmlentities, mysql_escape_string, stripslashes, htmlspecialchars. Poate am omis ceva, depinde oricum de la site la site, depinde de ce interogari fac. Ma gandeam ca o functie complexa care sa cuprinda toate functiile php de filtrare a XSS sau SQLI ar putea sa incetineasca un site.

Sunt curios ce folositi si voi?

Posted

Secretul un site bun este un web developer bun. Daca eroarea exista poti folosi ce vrea pula ta un haxor adevarat ii da de cap stai tu fara griji. O persoana bazata pe web vulnerability de ceva timp (cativa ani) iti exploateaza eroarea fara probleme.

Zic si eu.

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...