> I'd love to know your position on writing a short section > about "SQL injection and others" in security.xml, something > similar has already done for filesystem security. > > It aims to be an introduction into the very basics of PHP > related database security and vulnerability, because: > > " the strongest and most significant feature of PHP is > " its support for a wide range of databases. Writing > " a database-enabled web page is incredibly simple. > [from the manual :)] > > IMHO, it's indeed incredible simple, but users must be aware > of this attacking technique, too. What do you think? > I have further examples and some avoiding techniques, and > hopefully you may also share your valuable knowledge about > this topic.
Go on, and add this section :) Others will correct your grammar mistakes, and other errors... Goba