Home Accessibility Courses Diary The Mouth Forum Resources Site Map About Us Contact

New telephone system - working a day early.
01225 708225 (phone) and 01225 899360 (fax) again ;-)
Upcoming U.K. PHP courses ...
Learning to program in PHP
PHP Programming
Object Oriented PHP
PHP Techniques Workshop

Related technical and longer articles
Spotting and stopping denial of service attacks
Tips and short articles on this subject
Protecting your images from use out of context
Security considerations in programming - what do we teach?
An example of an injection attack using Javascript
Injection Attack if register_globals in on - PHP
Injection Attacks - avoiding them in your PHP
Who is watching you?
Defensive coding techniques in PHP?
PHP - Sanitised application principles for security and useability
Are nasty programs looking for security holes on your server?
A story about benchmarking PHP
Using PHP to upload images / Store on MySQL database - security questions
Error logging to file not browser in PHP
Easy handling of errors in PHP
Injection attacks - safeguard your PHP scripts
Learning to write secure, maintainable PHP
What is an SQL injection attack?
A lion in a cage - PHP
Robust checking of data entered by users
Spotting a denial of service attack
Well House Consultants
You are on the site of Well House Consultants who provide Open Source Training Courses and business hotel accommodation. You are welcome to browse and use our resources subject to our copyright statement and to add in links from your pages to ours.
Other subject areas - resources
Java Resources
Well House Manor Resources
Perl Resources
Python Resources
PHP Resources
Object Orientation and General topics
MySQL Resources
Linux / LAMP / Tomcat Resources
Well House Consultants Resources
Extras Resources
C and C++ Resources
Ruby Resources
Tcl/Tk Resources
Web and Intranet Resources
PHP module H117
Security in PHP
Exercises, examples and other material relating to training module H117. This topic is presented on public courses Learning to program in PHP, PHP Programming

PHP Programming - Learn PHP, and its use as a Web-scripting language This course covers the fundamentals of programming in PHP and Web-related issues ...
http://www.wellho.net/course/phfull.html  [course]
Learning to program in PHP - Learn PHP, and its use as a Web-scripting language This course covers the fundamentals of programming in PHP and Web-related ...
http://www.wellho.net/course/pffull.html  [course]
Looking through my log file reports for the last week, I have found the following in my "failed requests" log.  546: /errors.php   52:   /errors.php?error=http://www.beautiful-america.com/admin/id.txt? ...
http://www.wellho.net/mouth/1542_Are ... rver-.html  [short article]
"Please help me debug this virus." I'm paraphrasing something that was posted, a long while ago now, on a board I look after ... and I deleted the code ...
http://www.wellho.net/mouth/1779_Inj ... r-PHP.html  [short article]
How often have you written a piece of code that's a "spike solution" - it works well on good data - and then spent just as long as you took to do most ...
http://www.wellho.net/mouth/1323_Eas ... n-PHP.html  [short article]
Yesterday, the page on our website that shows you how to upload an image from a browser in a PHP script, store the image in a database, and later on ...
http://www.wellho.net/mouth/1396_Usi ... tions.html  [short article]
You may have heard me talk about "injection attacks" and that having register_globals set to on in PHP makes you liable to be caught by them. Well - ...
http://www.wellho.net/mouth/2025_Inj ... n-PHP.html  [short article]

If you put a PHP application on a public server, you probably intend it to be used by the public. Anyone with web access can come along to your page and run your scripts, but you're not going to be there to police them all the time. This module looks at the aspects of PHP security you should be aware of to prevent malicious actions, and also suggests that you consider security against simple user error too.

This topic is presented on public courses Learning to program in PHP, PHP Programming

Background information
Some modules are available for download as a sample of our material or under an Open Training Notes License for free download from http://www.training-notes.co.uk.
Topics covered in this module
Security from first principles.
PHP as a CGI library and as an Apache Module.
Issues with Register Globals.
Hiding PHP.
Complete learning
If you are looking for a complete course and not just a information on a single subject, visit our Listing and schedule page.

Well House Consultants specialise in training courses in Python, Perl, PHP, and MySQL. We run Private Courses throughout the UK (and beyond for longer courses), and Public Courses at our training centre in Melksham, Wiltshire, England. It's surprisingly cost effective to come on our public courses - even if you live in a different country or continent to us.

We have a technical library of over 700 books on the subjects on which we teach. These books are available for reference at our training centre. Also available is the Opentalk Forum for discussion of technical questions.


You can Add a comment or ranking to this page

© WELL HOUSE CONSULTANTS LTD., 2010: Well House Manor • 48 Spa Road • Melksham, Wiltshire • United Kingdom • SN12 7NY
PH: 0800 043 8225 or 01225 708225 • FAX: 01225 899360 • EMAIL: info@wellho.net • WEB: http://www.wellho.net • SKYPE: wellho