Re: Book Recommendation: Secure web programming ?

2005-10-08 Thread Randal L. Schwartz
> "Elfyn" == Elfyn McBratney <[EMAIL PROTECTED]> writes: Elfyn> * Escape [shell] `meta'-characters - `"', `;', '|', etc. - in all user Elfyn> input. This is especially important if you hand-off user-supplied Elfyn> input to an external program (for example, `sendmail'); Even better

Re: Book Recommendation: Secure web programming ?

2005-10-08 Thread Elfyn McBratney
Hiya Randy, On Tue, Oct 04, 2005 at 03:30:23 -0400, Randy W. Sims wrote: > I know perl. I know some basics of web/CGI programming, but haven't > done anything where security really matters. Could anyone recommend > books or references that discuss real-world web programming, that > show the ri

Book Recommendation: Secure web programming ?

2005-10-04 Thread Randy W. Sims
I know perl. I know some basics of web/CGI programming, but haven't done anything where security really matters. Could anyone recommend books or references that discuss real-world web programming, that show the right way to create secure sites? Topics like creating logins, varying levels of acc