Nice article..
in search forms, many forget to put some kind of filtering, resulting in XSS .
htmlentities() , is pretty good to block XSS to certain extent.
desiboy Reviewed by desiboy on . [PHP] Secure your data One of the biggest concerns of all developers or any webmaster running a custom script (no support for it) is security, and since hackers are making sure to reach every hole, we need to make sure it's closed before they reach it. If you run your inputs through a database or just temporarily displaying it on your website, or even executing shell commands, you need to make sure that your entries are escaped, or clean in other words. Some of the most common functions to clean or escape in Rating: 5