PHP Master: Write Cutting-edge Code by Lorna Mitchell & Davey Shafik & Matthew Turland

PHP Master: Write Cutting-edge Code by Lorna Mitchell & Davey Shafik & Matthew Turland

Author:Lorna Mitchell & Davey Shafik & Matthew Turland
Language: eng
Format: mobi, epub
Publisher: SitePoint Pty. Ltd.
Published: 2011-10-26T16:00:00+00:00


Online Resources

Again, Chris Shiflett’s site and the Open Web Application Security Project provide an excellent background in how to tackle session hijacking. Further reading can be found here:

http://shiflett.org/articles/session-hijacking

http://shiflett.org/articles/the-truth-about-sessions

http://phpsec.org/projects/guide/4.html#4.2

https://www.owasp.org/index.php/Session_hijacking_attack

SQL Injection

The nature of this type of vulnerability relates back to the section called “Filter Input, Escape Output ”. In principle, SQL injection is very similar to XSS in that the object of the attack is to make the application interpret user input as having meaning beyond the data it represents. With XSS, the intent is to have that input executed as client-side code; with SQL injection, the goal is for input to be interpreted as an SQL query or part of one.



Download



Copyright Disclaimer:
This site does not store any files on its server. We only index and link to content provided by other sites. Please contact the content providers to delete copyright contents if any and email us, we'll remove relevant links or contents immediately.