WebApp Sec mailing list archives

Re: Anyone have some basic security tips for PHP-programmers?


From: DownBload <downbload () hotmail com>
Date: 16 Nov 2003 20:48:48 -0000

In-Reply-To: <52D1E8A877040744B1AA562F4AD9192B072611E0 () wcexchange co washoe nv us>


Good Morning (at least here in Nevada)

I am a graphics guy by trade, who happens to have some proficiency with
code.

Since my PHP knowledge is pretty much self-taught, however, I am certain
that I'm probably doing some hack-prone stuff.

Anyone have any hints for good PHP practices  (Looking for kind of a "This
is one of the most common PHP security flaws" kind of thing)?

Chris Matthews
E-Government Information Officer
Community Relations, Washoe County
http://www.co.washoe.nv.us
775.328.3719



Nevada, say HI to those aliens in AREA51 ;-)

Great site about PHP security:
http://www.phpadvisory.com/

Also very good articles on PHP security:
http://www.scriptygoddess.com/archives/004185.php

PHP security article recently posted on linuxsecurity:
http://www.oetrends.com/news.php?action=view_record&idnum=278

bye...

------------------------------------
DownBload / Illegal Instruction Labs
Security Research & Education
http://www.ii-labs.org
e-mail:downbload[at]hotmail.com
  ,     ,  
 /|     |\ 
 \\.....//  "Born under the lucky star magical,
  |.\ /.|    but on this earth generally tragical."
   \\^//
    o_o
     ` 
Check our wargame: www.ii-labs.org/wargame/


Current thread: