Matthew Weir O'Phinney has his review posted today of Ilia's new book from php|architect - their Guide to PHP Security.
I flew in to San Jose today to visit Zend, and later attend the Zend/PHP Conference and Expo (two days left... register now if you haven't, and have the time to attend; the conference sessions promise to be very interesting).
During the flight, I had plenty of time to go through Ilia's Guide to PHP Security, which I'd ordered several weeks ago, but hadn't had time to read since.
He seems impressed overall, finding a few "nuggets of experience" that he hadn't thought of before. Overall, though, a lot of the book is reinforcing the main standard of web security - "never trust your users". There are, unfortunately, some publishing errors that he noticed along the way - possibly due to a rush to the press - but they don't detract from the book's usefulness...




