|
Posted by Michael Vilain on 10/23/05 18:37
In article <1130073940.172105.246100@f14g2000cwb.googlegroups.com>,
"peter" <plaz987@yahoo.com> wrote:
> I have taken over the website duties at work. I am still learning PHP
> and MySQL. I want to have a form where the user enters some finacial
> info and it is stored in a database. It, obviously, needs to be
> secure. I know how to make the input form secure. But what about
> retrieving the data? I was thinking I would use a password-protected
> secure form for that. Is that enough? What if I happen to view the
> records using PhpMyAdmin? Does that constitute an insecure
> transmission? Any other thoughts regarding the security of a setup
> like this would also be greatly appreciated.
>
> Thanks,
>
> Peter
http://shiflett.org/articles
has great articles on php and security issues. Specific to your
question, there's
http://shiflett.org/articles/security-corner-jul2004
http://shiflett.org/articles/security-corner-apr2004
--
DeeDee, don't press that button! DeeDee! NO! Dee...
Navigation:
[Reply to this message]
|