This may Why Hackers hate the MySQL function mysql_real_escape_string()(nscraps.com)
nscraps.com
This may Why Hackers hate the MySQL function mysql_real_escape_string()
http://nscraps.com/SQL/861-how-to-prevent-sql-injection-attacks.htm
1 comments
How old is this article? Nobody in their right mind would run PHP4 any more, and any development done in the last few years should be using PDO and prepared statements.