20.03.2014, 07:31
Hey, it's tranlate from hebrew tutorial, I published another forum.
Okay.
Quote:
You realise that using the root user for everything with no password is just begging to be hacked right? The first thing I do is create two new accounts - one with only create and modify table privileges, and another with SELECT/INSERT/UPDATE. I use the second in modes, the first just to create tables in advance, and lock down "root" as much as possible to minimise SQL injection vectors.
|