- Messages
- 19
- Reaction score
- 1
- Points
- 0
So I've finally decided to port over to PDO after reading the thread posted in here, I already have general knowledge of mysql so it's not difficult just have to learn the process.
But after reading a few tutorials about PDO and reading through the manual, I am a little confused as to if it is really going to protect against attackers. Some say yes, some say no and that we should sanitize our data still, yet they also say PDO escapes for us so we don't need to use mysql_real_string_escape.
What are your views and how do you protect using PDO? I've tried searching google quickly but nothing useful really came up.
But after reading a few tutorials about PDO and reading through the manual, I am a little confused as to if it is really going to protect against attackers. Some say yes, some say no and that we should sanitize our data still, yet they also say PDO escapes for us so we don't need to use mysql_real_string_escape.
What are your views and how do you protect using PDO? I've tried searching google quickly but nothing useful really came up.