Creating a login System [PHP] - by: GamingW[PHP][Coding][READ JEFF'S POSTS]

Started by: GamingWarrior | Replies: 24 | Views: 4,903

Cicada
2

Posts: 313
Joined: Dec 2006
Rep: 10

View Profile
Dec 30, 2007 8:13 PM #75053
JEFFERS JUST ****ING OWNED YOU FOOLZ

High five Jeff.
GamingWarrior
Banned

Posts: 70
Joined: Oct 2007
Rep: 10

View Profile
Jan 2, 2008 9:17 PM #75574
Lmao, funny how everyone thinks jeff did his uber pwn crap on me. All he did was correct me in 2 mistakes. No one ever uses the functions he told me to use, thats the old php version. He quoted pieces of my code, and he never actually found a problem with it, just ways of improving. Honestly, how can you improve me on something like an "ID" in a input field? It makes no ****ing difference, so get that in your head. Cicada, stop acting like his bitch all the time, seriously... Even on SL.

He said never take out the slashes in a $_SESSION username. It wouldn't make a difference wether you took it off before or after. AND JUST TO LET YOU KNOW, YOU DON'T HAVE TO PUT NULL IN A FIELD, IT DOES IT AUTOMATICALY. ****!. Its also called a DEMO!!!! It doesnt ****ing matter wether its Hashed or not, you can always make a new one, it was for testing. Demo counts as a Username, not an ADMIN!

function clean($text) {
return strip_tags(htmlspecialchars(addslashes(stripslashes($text)), ENT_QUOTES));
}



That shit was no different then what I did. LMAO YOU ADD SLASHES THEN STRIPSLAHES, HOW ****ING DUMP ARE YOU? You have to add the slashes after you ****ing validate the data. You forgot TRIM, and to escape the strings the proper way with mysql_real_escape_string.

die("SUCCESS, you are now logged in ".stripslashes($_SESSION['username']));


Wait, didn't you just ****ing remove the slashes? LMAO


I showed this page to a professional, and he said the only errors were

'=='
'}'

Thats it, a simple ****ing bracket, and a typo.

There you go.
Chimaera
2

Posts: 2,490
Joined: Oct 2005
Rep: 10

View Profile
Jan 2, 2008 9:20 PM #75578
Quote from GamingWarrior
HOW ****ING DUMP ARE YOU?


Oh, the irony.
Cicada
2

Posts: 313
Joined: Dec 2006
Rep: 10

View Profile
Jan 7, 2008 2:23 AM #76513
Quote from GamingWarrior
I showed this page to a professional, and he said the only errors were


Did he also tell you that Jeff ****ing destroyed you?
Strife

Posts: 453
Joined: Oct 2006
Rep: 10

View Profile
Jan 11, 2008 1:19 AM #77402
Wow, stop trying to cover it up GW, Jeff just helped you now you're trying to act all cool, like you meant to do it like that.

Just stop.
Jeff
Administrator
1

Posts: 4,356
Joined: Dec 2007
Rep: 10

View Profile
Jan 11, 2008 1:36 AM #77467
Quote from GamingWarrior
Lmao, funny how everyone thinks jeff did his uber pwn crap on me. All he did was correct me in 2 mistakes.


Actually, I took your pile of shit tutorial, and made it work. Anyone who would have copied and pasted your original tutorial wouldn't have gotten very far if they didn't already know how some PHP.

Quote from GamingWarrior
No one ever uses the functions he told me to use, thats the old php version.


If by no one you mean retards who don't know how to secure their website then yes. Also old php version? What? Your idiocy causes me confusion.

Quote from GamingWarrior
He quoted pieces of my code, and he never actually found a problem with it, just ways of improving.


I'm going to go ahead now and assume you didn't read any of what I said. Either that or you're too much of an egotist to realise that your shit does infact stink. These are the only logical conclusions one can come to when one isn't a retard themselves.

Quote from GamingWarrior
Honestly, how can you improve me on something like an "ID" in a input field? It makes no ****ing difference, so get that in your head.


This only further supports my previous theory. You'll notice the changes I made to your input were not just the id field (I would've left them out personally, unless I was going to include javascript which needed them in), but I also changed the name field as well.

Quote from GamingWarrior
Cicada, stop acting like his bitch all the time, seriously... Even on SL.


Since when have you been on SL long enough to determine Cicada's relationship with myself? Oh wait, that's right, you haven't.

Quote from GamingWarrior
He said never take out the slashes in a $_SESSION username. It wouldn't make a difference wether you took it off before or after.


If the $_SESSION['username'] variable happened to be, oh I don't know, say,

'; DELETE FROM users WHERE 1 or username = '


And you ran an SQL query to the users database with $_SESSION['username'] as a where clause, this would be a bad thing, would it not?

So it would matter if you took out the slashes before hand. That's what I thought, okay, thanks for comfirming that.

Quote from GamingWarrior
AND JUST TO LET YOU KNOW, YOU DON'T HAVE TO PUT NULL IN A FIELD, IT DOES IT AUTOMATICALY. ****!.


Uh, what?

Quote from GamingWarrior
Its also called a DEMO!!!! It doesnt ****ing matter wether its Hashed or not, you can always make a new one, it was for testing. Demo counts as a Username, not an ADMIN!


I know what a demo is, and it doesn't matter what it's used for because if people followed this tutorial, they'd have nothing but a big pile of steaming errors to "try out".

Also it does very much matter whether or not the password is hashed or not, because if it's not hashed, the way you have it coded originally is it checks for a hashed password in the database. So if the password in the database is 12345, and the user puts that in to the password box when logging in, and hits enter, it's going to look into the database for an md5 hash of 12345, not 12345 itself.

Quote from GamingWarrior
function clean($text) {
return strip_tags(htmlspecialchars(addslashes(stripslashes($text)), ENT_QUOTES));
}



That shit was no different then what I did.


Prove it.

Quote from GamingWarrior
LMAO YOU ADD SLASHES THEN STRIPSLAHES, HOW ****ING DUMP ARE YOU?


Obviously not dumb enough to spew out incomprehensible garbage at the same rate and consistency you do so you would actually understand what I say, as it appears you'd have to speak the same dialect of idiot you do to get any basic concepts through to you.

You strip the slashes just incase there are already slashes on it, so you don't end up with \\\\\\\\\\' in the database because you added too many slashes.

Quote from GamingWarrior
You have to add the slashes after you ****ing validate the data.


You add the slashes before validation. Trust me. Or don't, in this case I'll simply show you when you set up a site and don't validate data properly.

Quote from GamingWarrior
You forgot TRIM, and to escape the strings the proper way with mysql_real_escape_string.


I didn't forget it, I simply chose to omit it, because I don't want to use trim all the time when I clean my input and output.

And mysql_real_escape_string is for escaping strings the proper way when tou insert them into the database, not in general. And before you say, "so y didnt u use it wen insurting data into the database??????/11/!/1/1", I did. This is why I also have the function mysql_clean created, so instead of adding slashes, it uses mysql_real_escape_string.

Quote from GamingWarrior
die("SUCCESS, you are now logged in ".stripslashes($_SESSION['username']));


Wait, didn't you just ****ing remove the slashes? LMAO


No?

Quote from GamingWarrior
I showed this page to a professional, and he said the only errors were

'=='
'}'

Thats it, a simple ****ing bracket, and a typo.

There you go.


I doubt this. Proof please.
Lf2Master
2

Posts: 198
Joined: Aug 2005
Rep: 10

View Profile
Jan 11, 2008 1:38 AM #77476
Thanks JeffSL! Your corrections finally got my site to work!
Kveyo

Posts: 1,063
Joined: Sep 2005
Rep: 8

View Profile
Jan 11, 2008 2:20 AM #77584
Thanks JeffSL! Your corrections finally got my site to work!
Puddles1000
2

Posts: 252
Joined: Jan 2008
Rep: 10

View Profile
Jan 25, 2008 10:37 PM #79780
That was soo confusing i think ill stick to pivot.
Puddles1000
2

Posts: 252
Joined: Jan 2008
Rep: 10

View Profile
Jan 25, 2008 10:54 PM #79789
because i know that Pivot Animation has to do with what this is about.