How to prevent form hijacking in PHP?

shophia

New member
Joined
Mar 25, 2013
Messages
45
Points
0
1. Create register_globals to off to avert Form Injection with malicious data.

2. Make Error_reporting to E_ALL so that all variables will be initialized earlier than using them.

3. Make perform of using htmlentities(), strip_tags(), utf8_decode() and addslashes() for filtering malicious data in php.

4. SQL injection attacks by using mysql_escape_string().

5. User Input Sanitization-Never belief web user submitted data. Follow best client side data validation performance with normal terms before submitting data to the supply.

6. Form Submission Key Validation: A singleton technique can be used to create a session form key & validating form being submitted for the equal value alongside hidden form key parameters.
 

hoangvu

New member
Joined
Jun 6, 2012
Messages
1,835
Points
0
Good Tips, Sophia, your explanations about how to prevent form hijacking in PHP are very detail, and easy to understand. Thank you.
 

md_lee

New member
Joined
Apr 24, 2013
Messages
10
Points
0
I would like to recommend encrypting data with a strong generation sequence wherever possible, in order to increase security. Also, in order to make the data secure from naive brute-force attackers, specific techniques can be put in place.
 
Older threads
Replies
13
Views
6,444
Replies
0
Views
2,861
Replies
3
Views
2,693
Replies
0
Views
5,828
Newer threads
Latest threads
Replies
0
Views
29
Replies
0
Views
31
Replies
1
Views
41
Replies
3
Views
98
Recommended threads
Replies
2
Views
2,971
Replies
9
Views
6,123
Top