Notes

1http://xkcd.com/327/

2For most of these precise details were undisclosed, so we can’t be certain these were due to SQL injection attacks. Chances are the majority were though.

3The mysql_* extension and it’s methods are officially deprecated. Please don’t use them.

4http://us1.php.net/manual/en/intro.pdo.php

5http://stackoverflow.com/questions/7394711/what-is-dynamic-typing

6http://us1.php.net/htmlentities

7http://us1.php.net/htmlspecialchars

8http://us1.php.net/escapeshellcmd

9http://us1.php.net/escapeshellarg