TY - BOOK AU - Snyder,Chris AU - Southwell,Michael ED - SpringerLink (Online service) TI - Pro PHP Security SN - 9781430200574 AV - QA76.758 U1 - 005.1 23 PY - 2005/// CY - Berkeley, CA PB - Apress KW - Computer science KW - Software engineering KW - Computer Science KW - Software Engineering/Programming and Operating Systems N1 - The Importance of Security -- Why Is Secure Programming a Concern? -- Maintaining a Secure Environment -- Dealing with Shared Hosts -- Maintaining Separate Development and Production Environments -- Keeping Software Up to Date -- Using Encryption I: Theory -- Using Encryption II: Practice -- Securing Network Connections I: SSL -- Securing Network Connections II: SSH -- Controlling Access I: Authentication -- Controlling Access II: Permissions and Restrictions -- Practicing Secure PHP Programming -- Validating User Input -- Preventing SQL Injection -- Preventing Cross-Site Scripting -- Preventing Remote Execution -- Enforcing Security for Temporary Files -- Preventing Session Hijacking -- Practicing Secure Operations -- Allowing Only Human Users -- Verifying Your Users’ Identities -- Using Roles to Authorize Actions -- Adding Accountability to Track Your Users -- Preventing Data Loss -- Safely Executing System Commands -- Handling Remote Procedure Calls Safely -- Taking Advantage of Peer Review N2 - Pro PHP Security is one of the first books devoted solely to PHP security. It will serve as your complete guide for taking defensive and proactive security measures within your PHP applications. The methods discussed are compatible with PHP versions 3, 4, and 5. The knowledge you'll gain from this comprehensive guide will help you prevent attackers from potentially disrupting site operation or destroying data. And you'll learn about various security measures, for example, creating and deploying "captchas," validating e-mail, fending off SQL injection attacks, and preventing cross-site scripting attempts UR - http://dx.doi.org/10.1007/978-1-4302-0057-4 ER -