On 05/27/2014 07:35 AM, Brian J. Rogers wrote:
The mysql_* functions are being deprecated. So the recommendation is to use
PDO. PDO's prepared statements will help sanitize your input, because even
on an update/insert, a malicious user can still wreck havoc.

In addition to the PDO libraries, the mysqli_* functions are the successors to the mysql_* functions, and support prepared statements. PDO has support for named parameters, however, which is definitely a plus.

http://code.tutsplus.com/tutorials/pdo-vs-mysqli-which-should-you-use--net-24059

Steve

/*
PLUG: http://plug.org, #utah on irc.freenode.net
Unsubscribe: http://plug.org/mailman/options/plug
Don't fear the penguin.
*/

Reply via email to