Notes

1http://xkcd.com/327/↩

2For most of these precise details were undisclosed, so we can’t be certain these were due to SQL injection attacks. Chances are the majority were though.↩

3The mysql_* extension and it’s methods are officially deprecated. Please don’t use them.↩

4http://us1.php.net/manual/en/intro.pdo.php↩

5http://stackoverflow.com/questions/7394711/what-is-dynamic-typing↩

6http://us1.php.net/htmlentities↩

7http://us1.php.net/htmlspecialchars↩

8http://us1.php.net/escapeshellcmd↩

9http://us1.php.net/escapeshellarg↩