Anti Sql Injection Protection

Page 5 of 5 FirstFirst 12345
Results 101 to 118 of 118
  1. #101
    Real pro graywolf is offline
    MemberRank
    Mar 2004 Join Date
    Latvia // RigaLocation
    697Posts
    ok thanks i got that read and understood what you did change, but still the questions left abot the action, can it be cancled, not only logged ?

  2. #102
    Real pro graywolf is offline
    MemberRank
    Mar 2004 Join Date
    Latvia // RigaLocation
    697Posts
    and on website when i try to reg it always show, hacking attemp you are such a nooby.... and not registering - stops the action.:P need to fix this too, waiting got your reply.

  3. #103
    Real pro graywolf is offline
    MemberRank
    Mar 2004 Join Date
    Latvia // RigaLocation
    697Posts
    Ok i fixed that hacking attemp... now all working fine, left ONLY 1 think, wich i want that you help me to fix... stop the action if its using the sql-injection. Please help. I am still online. thanks.

  4. #104
    Real pro graywolf is offline
    MemberRank
    Mar 2004 Join Date
    Latvia // RigaLocation
    697Posts
    i think now is all ok, i just downloaded the new version of anti_sqlinjection php script... not that wich shared john_d.

  5. #105
    Member porkmaster is offline
    MemberRank
    Dec 2004 Join Date
    n/aLocation
    69Posts
    Quote Originally Posted by graywolf
    and on website when i try to reg it always show, hacking attemp you are such a nooby.... and not registering - stops the action.:P need to fix this too, waiting got your reply.
    Check the referer string to match your website.

  6. #106
    Member porkmaster is offline
    MemberRank
    Dec 2004 Join Date
    n/aLocation
    69Posts
    Quote Originally Posted by graywolf
    Ok i fixed that hacking attemp... now all working fine, left ONLY 1 think, wich i want that you help me to fix... stop the action if its using the sql-injection. Please help. I am still online. thanks.
    After the redirect, make sure you have a die(). I don't remember if you do.

  7. #107
    Real pro graywolf is offline
    MemberRank
    Mar 2004 Join Date
    Latvia // RigaLocation
    697Posts
    after redirrect i have:
    === FALSE ) {
    die ( 'Hacking attempt. Your are such a Nooby!.. ' );
    **;

  8. #108
    Alpha Member john_d is offline
    MemberRank
    Feb 2004 Join Date
    PhilippinesLocation
    2,868Posts
    the newier version of the anti injection is in the mutoolz xmas version ... it has GET protection now.,. coz some people actually program with GET variables.

    after i get sober ill will make a new thread with a new schema of protection for PHP websites.. yet another tutorial.. i have been using this,. so i guess it is very protected.

  9. #109
    Real pro graywolf is offline
    MemberRank
    Mar 2004 Join Date
    Latvia // RigaLocation
    697Posts
    can i have a link to newest version ?

  10. #110
    Valued Member SirMaximuM is offline
    MemberRank
    Aug 2004 Join Date
    BRLocation
    113Posts
    Where is the protection code to ASP pages ? ...

    thanks

  11. #111
    HOT z HurryPoker is offline
    MemberRank
    Sep 2005 Join Date
    RO-maniaLocation
    737Posts

    Re: [Guide] Anti Sql Injection Protection

    john_d you are a greate man!

  12. #112
    Live your Life Stifi is offline
    MemberRank
    Nov 2007 Join Date
    BulgariaLocation
    452Posts

    Re: [Guide] Anti Sql Injection Protection

    bad, not good to be recording in data file.

  13. #113
    Account Upgraded | Title Enabled! Hidden is offline
    MemberRank
    Apr 2008 Join Date
    .Location
    367Posts

    Re: [Guide] Anti Sql Injection Protection

    if (stristr($_SERVER['HTTP_REFERER'], 'http://www.supamu.info') === FALSE ) {
    die ( 'Hacking attempt. Your are such a Nooby!.. ' );
    **
    You can spoof your refferal headers to anything now a days :)

  14. #114
    Member jandy is offline
    MemberRank
    Jan 2011 Join Date
    Cebu City, PhilLocation
    57Posts

    Re: Anti Sql Injection Protection

    anyone can help me plss? here's my ym bradix_john_123@yahoo.com

  15. #115
    Member boardza is offline
    MemberRank
    Sep 2010 Join Date
    88Posts

    Re: Anti Sql Injection Protection

    I have a problem with the code you provided.


    Warning: session_destroy() [function.session-destroy]: Trying to destroy uninitialized session in ...

  16. #116
    Account Upgraded | Title Enabled! nitro+ is offline
    MemberRank
    Dec 2008 Join Date
    United StatesLocation
    1,055Posts

    Re: Anti Sql Injection Protection

    If you rely upon stored data it may potentially be tainted, code should be using mysql_real_escape_string() (but not addslashes() which is insufficient). This provides limited protection to simple SQL injections, but is the absolute minimum required for all applications trying to use the native database interfaces.

  17. #117

    Re: Anti Sql Injection Protection

    this one will block MUsqltools 2.1 ? because its connect by using IP

  18. #118
    Member PurpleFox21 is offline
    MemberRank
    Feb 2012 Join Date
    Czech RepublicLocation
    55Posts

    Re: Anti Sql Injection Protection

    Dont like lazy guides where to put exactly the code for SQL injections cuz from ur explanation -> "Put these on the top of the page just after <?" i didnt get much ,also do i have the atached file "sql_inject.dll" copy to folder where php.ini is?



Page 5 of 5 FirstFirst 12345

Advertisement