Ò׽ؽØÍ¼Èí¼þ¡¢µ¥Îļþ¡¢Ãâ°²×°¡¢´¿ÂÌÉ«¡¢½ö160KB

PHP Session ±äÁ¿

µ±ÄúÔËÐÐÒ»¸öÓ¦ÓóÌÐòʱ£¬Äú»á´ò¿ªËü£¬×öЩ¸ü¸Ä£¬È»ºó¹Ø±ÕËü¡£ÕâºÜÏñÒ»´Î»á»°¡£¼ÆËã»úÇå³þÄãÊÇË­¡£ËüÖªµÀÄãºÎʱÆô¶¯Ó¦ÓóÌÐò£¬²¢ÔÚºÎʱÖÕÖ¹¡£µ«ÊÇÔÚÒòÌØÍøÉÏ£¬´æÔÚÒ»¸öÎÊÌ⣺·þÎñÆ÷²»ÖªµÀÄãÊÇË­ÒÔ¼°Äã×öʲô£¬ÕâÊÇÓÉÓÚ HTTP µØÖ·²»ÄÜά³Ö״̬¡£
ͨ¹ýÔÚ·þÎñÆ÷ÉÏ´æ´¢Óû§ÐÅÏ¢ÒÔ±ãËæºóʹÓã¬PHP session ½â¾öÁËÕâ¸öÎÊÌ⣨±ÈÈçÓû§Ãû³Æ¡¢¹ºÂòÉÌÆ·µÈ£©¡£²»¹ý£¬»á»°ÐÅÏ¢ÊÇÁÙʱµÄ£¬ÔÚÓû§Àë¿ªÍøÕ¾ºó½«±»É¾³ý¡£Èç¹ûÄúÐèÒªÓÀ¾Ã´¢´æÐÅÏ¢£¬¿ÉÒÔ°ÑÊý¾Ý´æ´¢ÔÚÊý¾Ý¿âÖС£
Session µÄ¹¤×÷»úÖÆÊÇ£ºÎªÃ¿¸ö·ÃÎÊÕß´´½¨Ò»¸öΨһµÄ id (UID)£¬²¢»ùÓÚÕâ¸ö UID À´´æ´¢±äÁ¿¡£UID ´æ´¢ÔÚ cookie ÖУ¬Òà»òͨ¹ý URL ½øÐд«µ¼¡£
¿ªÊ¼ PHP Session
ÔÚÄú°ÑÓû§ÐÅÏ¢´æ´¢µ½ PHP session ÖÐ֮ǰ£¬Ê×ÏȱØÐëÆô¶¯»á»°¡£
×¢ÊÍ£ºsession_start() º¯Êý±ØÐëλÓÚ <html> ±êǩ֮ǰ£º
<?php session_start(); ?>
<html>
<body>
</body>
</html>
ÉÏÃæµÄ´úÂë»áÏò·þÎñÆ÷×¢²áÓû§µÄ»á»°£¬ÒÔ±ãÄú¿ÉÒÔ¿ªÊ¼±£´æÓû§ÐÅÏ¢£¬Í¬Ê±»áΪÓû§»á»°·ÖÅäÒ»¸ö UID¡£
´æ´¢ Session ±äÁ¿
´æ´¢ºÍÈ¡»Ø session ±äÁ¿µÄÕýÈ··½·¨ÊÇʹÓà PHP $_SESSION ±äÁ¿£º
<?php
session_start();
// store session data
$_SESSION['views']=1;
?>
<html>
<body>
<?php
//retrieve session data
echo "Pageviews=". $_SESSION['views'];
?>
</body>
</html>
Êä³ö£º
Pageviews=1
ÔÚÏÂÃæµÄÀý×ÓÖУ¬ÎÒÃÇ´´½¨ÁËÒ»¸ö¼òµ¥µÄ page-view ¼ÆÊýÆ÷¡£isset() º¯Êý¼ì²âÊÇ·ñÒÑÉèÖà "views" ±äÁ¿¡£Èç¹ûÒÑÉèÖà "views" ±äÁ¿£¬ÎÒÃÇÀÛ¼Ó¼ÆÊýÆ÷¡£Èç¹û "views" ²»´æÔÚ£¬ÔòÎÒÃÇ´´½¨ "views" ±äÁ¿£¬²¢°ÑËüÉèÖÃΪ 1£º
<?php
session_start();
if(isset($_SESSION['views']))
$_SESSION['views']=$_SESSION['views']+1;
else
$_SESSION['views']=1;
echo "Views=". $_SESSION['views'];
?>
ÖÕ½á Session
Èç¹ûÄúÏ£Íûɾ³ýijЩ session Êý¾Ý£¬¿ÉÒÔʹÓà unset() »ò session_destroy() º¯Êý¡£
unset() º¯ÊýÓÃÓÚÊÍ·ÅÖ¸¶¨µÄ session ±äÁ¿£º
<?php
unset($_SESSION['views']);
?>
ÄúÒ²¿ÉÒÔͨ¹ý session_destroy() º¯Êý³¹µ×ÖÕ½á session£º
<?php
session_destroy();
?>
×¢ÊÍ£ºsession_destroy() ½«ÖØÖà session£¬Äú½«Ê§È¥ËùÓÐÒÑ´æ´¢µÄ session Êý¾Ý¡£


Ïà¹ØÎĵµ£º

¡¾×ª¡¿¸ß¼¶PHPÓ¦ÓóÌÐò©¶´ÉóºË¼¼Êõ




×÷ÕߣºPh4nt0m Security Team
À´Ô´£ºhttp://www.ph4nt0m.org-a.googlepages.com/PSTZine_0x03_0x06.txt
==Ph4nt0m Security Team==

Issue 0x03, Phile #0x06 of 0x07

|=---------------------------------------- ......

[ת]ϸ²ì PHP V5.3.0 ÌØÐÔ


ϸ²ì PHP V5.3.0 ÌØÐÔ
¼¶±ð£º Öм¶
Stephen B. Morris, CTO, Omey Communications
2009 Äê 12 ÔÂ 07 ÈÕ
Ëæ×ÅÁ÷ÐÐµÄ PHP ÓïÑԵIJ»¶ÏÑݱ䣬ºÜ¶àÐÂÌØÐÔʹËüÔÚÃæÏò¶ÔÏó·½ÃæÓÐÁ˽øÒ»²½µÄÔöÇ¿¡£±¾ÎÄͨ¹ýһЩ PHP V5.3 ʵÀýÑÝʾÑÓ³Ù¾²Ì¬°ó¶¨¡¢Ãû³Æ¿Õ¼äÖ§³Ö¡¢Àà·½·¨ÖØÔØÒÔ¼°±äÁ¿½âÎöºÍ heredoc Ö§³Ö¡£
ÐèÇó
³ýÁË¶Ô PHP ºÍ H ......

[ת]ÓÃphp_screw¼ÓÃÜPHP´úÂë

¿ªÊ¼Ö®Ç°£¬Ê×ÏÈÒª³ÎÇåÁ½¸öÎÊÌ⣺µÚÒ»£¬Ö§³Ö¿ªÔ´£¬²»µÈÓÚ·´¶Ô´úÂë¼ÓÃÜ£»µÚ¶þ£¬Èç¹û°Ñ²»ÊôÓÚ×Ô¼ºµÄ¶«Î÷£¨±ÈÈ繫˾µÄ£©ÄÃÈ¥¿ªÔ´£¬¾Í¸ü¼Ó²»Ó¦¸ÃÁË¡£
ÒÔǰ֪µÀµÄ£¬PHP´úÂëµÄ¼ÓÃܶ¼ÊÇÓÃZendµÄencoder£¬Õâ¶«Î÷²»µ«ÊÇÉÌÒµÈí¼þ£¬ºÃÏñ»¹±©³ö¹ýÄܹ»±»ÆÆ½âµÄÎÊÌ⣬ËùÒÔ¾ÍÕÒµ½ÁËÌæ´úµÄ·½°¸©¤©¤©¤©¤php_screw£¬Ò»¸öÈÕ±¾ÈË¿ª·¢µÄ¶«¶«¡£
p ......

phpÐòÁл¯

1£®Ç°ÑÔ
PHP £¨´Ó PHP 3.05
¿ªÊ¼£©Îª±£´æ¶ÔÏóÌṩÁËÒ»×éÐòÁл¯ºÍ·´ÐòÁл¯µÄº¯Êý£ºserialize¡¢unserialize¡£²»¹ýÔÚ PHP
ÊÖ²áÖжÔÕâÁ½¸öº¯ÊýµÄ˵Ã÷½öÏÞÓÚÈçºÎʹÓ㬶ø¶ÔÐòÁл¯½á¹ûµÄ¸ñʽȴû×öÈκÎ˵Ã÷¡£Òò´Ë£¬Õâ¶ÔÔÚÆäËûÓïÑÔÖÐʵÏÖ PHP
·½Ê½µÄÐòÁл¯À´Ëµ£¬¾Í±È½ÏÂé·³ÁË¡£ËäÈ»ÒÔǰҲËѼ¯ÁËһЩÆäËûÓïÑÔʵÏÖµÄ PHP ÐòÁл¯µ ......

comparing strings in PHP with the == operator

×î½üÔÚGreg Beaver'sµÄblogÉÏ·¢±íµÄһƪÐÂÎÄÕ comparing strings in PHP with the == operator ÖÐÌá¼°ÁËPHPµÄ == ÔËËã·ûÔÚ¶Ô×Ö·û´®½øÐбȽÏʱֵµÃ×¢ÒâµÄÎÊÌâ¡£
ÔÚijЩÇé¿öÏ£¬PHP»á°ÑÀàÊýÖµÊý¾Ý£¨È纬ÓÐÊý×ÖµÄ×Ö·û´®µÈ£©×ª»»³ÉÊýÖµ´¦Àí£¬== ÔËËã·û¾ÍÊÇÆäÖÐÖ®Ò»¡£ÔÚʹÓà == ÔËËã·û¶ÔÁ½¸ö×Ö·û´®½øÐÐËÉÉ¢±È½Ïʱ£¬PHP»á°ÑÀàÊý ......
© 2009 ej38.com All Rights Reserved. ¹ØÓÚE½¡ÍøÁªÏµÎÒÃÇ | Õ¾µãµØÍ¼ | ¸ÓICP±¸09004571ºÅ