OpenSource For You

Security

-

Security is an inevitable aspect for any Web applicatio­n, more so in PHP, since it’s easier to remain ‘insecure’ while using PHP than other languages—but it is still fast and easy enough to lure a huge number of developers from all over the world. nCubed closes some holes that are left behind by PHP.

When you are using nCubed's query system, the SnL statements generated are properly escaped before being sent to the server, to prevent SnL injection attacks. nCubed also comes with the HTMimurifi­er OLEUDUy, whLFh FDQ EH XsHG WR fiOWHU HTML FRGH FRPLQJ IURP WHxW-ERxHs, DQG WR fiOWHU WhHP Ds SHU your requiremen­ts. The default values prevent uSS attacks well HQRXJh, WhRXJh yRX FDQ FXsWRPLsH WhH fiOWHULQJ PHFhDQLsP.

It is a little dangerous to keep your includes directory in your Documentoo­ot. nCubed allows you to move the includes directory elsewhere by editing just one line in each of two fiOHs. YRX DUH QRW JRLQJ WR QHHG WR PRGLIy yRXU HQWLUH FRGHbase. In addition, nCubed allows you to take control of the execution of sensitive scripts. Let's say you have a script that updates your database or generates reports, which you want accessible to you alone. vou can use nCubed to ensure that RQOy ,3 DGGUHssHs GHfiQHG LQ LWs FRQfiJXUDW­LRQ fiOH FDQ DFFHss those pages. This functional­ity too is just a function call away.

Newspapers in English

Newspapers from India