This whole page is absolutely terrible and needs to be updated for mysqli using prepared statements. why are you teaching people how get themselves hacked?:

The difference between mysql() and mysqli() will not allow someone to get hacked. MatthewGall2005 17:30, 8 January 2010 (UTC)[reply]

i can redo some of it later on

( 19:21, 8 January 2010 (UTC)) Why would that lead to getting hacked? That should learn how to strip out dangerous characters from urls and forms - that would help prevent common attacks.[reply]