By default, PHP has magic quotes turned on, so any POST/GET/COOKIE variables are already escaped. It is bad practice to rely on this, but it will probably save most people.
While I agree with you that this is an important measure agains hacking, one more step would be a "division of power" so to speak. you would never use your root account to provide web services to your database... so why would you give a nonhuman account (which is only designed to be used in an insert statement) the ability to select or delete...
create special accounts with specific roles assigned to each (it will keep people from doing naughty things to your database)
most of these questions you have can be learned through a few simple searches on google. For starters "JMCSD" every thing that falls under queries is done in SQL. It is really easy to learn, but some functions are dependent on the database server you are using. Secondly, most any tutorial you see that uses php has something to do with databases because that is one of the most powerful points of php... and it is extremely simple and easy to learn (reference google).
If you are just trying to upload you html files to a web server or something of that nature, you are better off using ftp (secure ftp recommended) having a page that anyone can view, which is only intended for your own use is not a good idea... yes you can restrict access, but why go through the trouble?
YOU ARE A SEND FROM HEAVEN, MATE. for me who have extensive background in development on several platforms..You are an angel, saving me from starting on zero...All the best, thanks mate.
You should put some vids up of file manipulation up here man!! Seriously! Very informative videos man, they are very helpful. But yeah, file manipulation and maybe do you know how to write query's? Lol, teach what you can! Thanks man.
I have to say your tutorials are really great! Could you set up a Tutorial on how to allow users to intially set up an account, to set up Passwords and Usernames to slot into the MySQL Database, PS: Keep Up the Good Work Mate
0:15
dug327 7 months ago
This has been flagged as spam show
Program to search for vulnerabilities in php scripts
You can download the program go to:
rapidshare. com/files/454622728/security.rar
depositfiles. com/files/946egeo54
Note:
In reference to remove blank!
The file can swear antivirus!
kevin54683 10 months ago
This has been flagged as spam show
Program to search for vulnerabilities in php scripts
You can download the program go to:
rapidshare. com/files/454622728/security.rar
depositfiles. com/files/946egeo54
Note:
In reference to remove blank!
The file can swear antivirus!
kevin54683 10 months ago
By default, PHP has magic quotes turned on, so any POST/GET/COOKIE variables are already escaped. It is bad practice to rely on this, but it will probably save most people.
andmcg1 1 year ago
u should try using procedures :P
Sl0uly 1 year ago
0:01
jbcoldflames 1 year ago
0:00 SKIP ADD
jbcoldflames 1 year ago
lol
TMBlackCat 1 year ago
Here's the problem here.
You did the injection wrong.
It's quite obvious.
KKKWebkinzLover 1 year ago
SQLI SCANNER PACK
luck1435 1 year ago
sql injection is not even that hard u_u
446646 1 year ago
fck uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuummmmmmmmmm
]hahahha
LOL
spleken001 1 year ago
you even did it wrong >.>
sneakylight 1 year ago
ahmm :)) thx :P
knif30flam3 1 year ago
Thank you for your password ;).
danixvideos 2 years ago
did someone say EHHHHHHHHHHHHHHHHHHHHHU HHHHHHHHHHHHHHHH
ps3rule98 2 years ago
UUUUUHHHHHHHHHHHH UUUUUUUUhhhhhhh Uuuuhhhh
And uuuhhhh
Uhm
And uhm
derp derp uhm
CoolstorytroII 2 years ago
This has been flagged as spam show
aaaaaaaaaa....aaaaa.aaaaaaaaa.....aaaaaaaa.....aaaaaaaaaaa..................aaaaaaaaaaaaaaaaa
doggy2341 2 years ago
This has been flagged as spam show
maroon5rule 2 years ago 2
badTUTO..
Albbertt1 2 years ago
mysqli prepared statements bye
roofdoubleflip 2 years ago
This has been flagged as spam show
Ummmmmmmmmmmmmmmm Uhhhhhhhhhhhhhh damn that is so annnoying ummmmmm uhhhhhhhhhh
313biniar 2 years ago
ahmmmmmmmmmmmmmm i think he does it on uhmmmmmmmmmmmmmmmmm purpose.
daniel1982 2 years ago
Comment removed
qthinker 2 years ago
You dont need a function ffs.
Singod2 2 years ago
lol what a piece of code. please disregard this as a tutorial for php
rumco 2 years ago
I@ xFxB (crack the hash post in milworm they will update pass to you .
TheRezaali 2 years ago
This has been flagged as spam show
me a faggot nigga you da one putting shitload smiley faces on my page you fuckin man flirting afgan homo. go suck osama cock
CRIPPLEDD0ND0TTA 2 years ago
hey how do i get it to give me a password from a website?
IxFxB 2 years ago 8
Exploit the type of injections, then try injecting SELECT, UNION SQL queries to output details stored within the open database stream.
Rest is upto you to find out...
ShaunyBizzle 2 years ago
While I agree with you that this is an important measure agains hacking, one more step would be a "division of power" so to speak. you would never use your root account to provide web services to your database... so why would you give a nonhuman account (which is only designed to be used in an insert statement) the ability to select or delete...
create special accounts with specific roles assigned to each (it will keep people from doing naughty things to your database)
Snet89 2 years ago
@Snet89 I very much agree to your statement. Thank you for posting.
KKKWebkinzLover 1 year ago
most of these questions you have can be learned through a few simple searches on google. For starters "JMCSD" every thing that falls under queries is done in SQL. It is really easy to learn, but some functions are dependent on the database server you are using. Secondly, most any tutorial you see that uses php has something to do with databases because that is one of the most powerful points of php... and it is extremely simple and easy to learn (reference google).
Snet89 2 years ago
thanks for your tutorials.
the video is kind of fuzzy though.
do u have any tutorials using forms with a database?
I need to be able to connect my tables to my php webpge. how do I do that?
NajanJan 3 years ago
Comment removed
aus214 2 years ago
mate, can you do a sample of php, doing downloading and uploading of files. will appreciate it very much . thanks mate.
hotwork2009 3 years ago
If you are just trying to upload you html files to a web server or something of that nature, you are better off using ftp (secure ftp recommended) having a page that anyone can view, which is only intended for your own use is not a good idea... yes you can restrict access, but why go through the trouble?
Snet89 2 years ago
YOU ARE A SEND FROM HEAVEN, MATE. for me who have extensive background in development on several platforms..You are an angel, saving me from starting on zero...All the best, thanks mate.
hotwork2009 3 years ago
You should put some vids up of file manipulation up here man!! Seriously! Very informative videos man, they are very helpful. But yeah, file manipulation and maybe do you know how to write query's? Lol, teach what you can! Thanks man.
JMCSD 3 years ago
Hey guyz if you want to make a simple Register script, it really is very simple just look up the Mysql "INSERT" QUERY.
-SubZeroChaos
SubZeroChaos 3 years ago
I have to say your tutorials are really great! Could you set up a Tutorial on how to allow users to intially set up an account, to set up Passwords and Usernames to slot into the MySQL Database, PS: Keep Up the Good Work Mate
GOTTACUTLOOSE 3 years ago
i dont get it can you explain further..pls
wheay21 3 years ago 3
he already said he is going to post a real tutorial soon... selective hearing much??
greenguitar28 3 years ago
but its almost a year. where is it?
wheay21 3 years ago 5
my bad- your right...
greenguitar28 3 years ago