1 / 66
文档名称:

PHP Security.ppt

格式:ppt   大小:270KB   页数:66页
下载后只包含 1 个 PPT 格式的文档,没有任何的图纸或源代码,查看文件列表

如果您已付费下载过本站文档,您可以点这里二次下载

PHP Security.ppt

上传人:陈潇睡不醒 2020/2/12 文件大小:270 KB

下载得到文件列表

PHP Security.ppt

相关文档

文档介绍

文档介绍:PHPSecurityBy:sky1SecurityWhatisSecurity?Securityisameasurement,’’sabilitytopredictandpreventfuturesecurityproblems,,securitymustbeconsideredatalltimes;initialspec,implementation,&SecurityPHPkeepsongrowingasalanguage,&-,thereareaseriesofsuper-esstotheinputdata.$_GET–datafromgetrequests.$_POST–postrequestdata.$_COOKIE–cookieinformation.$_FILES–uploadedfiledata.$_SERVER–serverdata$_ENV–environmentvariables$binationofGET/POST/.?foo=bar>>$foo=“bar”;-initializedvariablescanbe“injected”(authenticated_user()){ $authorized=true;}if($authorized){ include'/highly/sensitive/';}Because$authorizedisleftun-initializedifuserauthenticationfails,essprivilegeddatabysimplypassingthevalueviaGET. /?authorized=-,($authorized===TRUE){?var[]=1&var[]=2Thelinkabovewillallowtheattackertoinjecttwovaluesint