Where can I learn more about safe CGI scripting?
The CGI security FAQ, maintained by Paul Phillips ( paulp@cerf.net), can be found at: http://www.go2net.com/people/paulp/cgi-security/safe-cgi.txt This document contains a great deal of useful advice, but has not been updated since September 1995. More recently, Selena Sol has published an excellent article on the risks of installing pre-built CGI scripts, with much helpful advice on configuring and customizing these scripts to increase their security. This article can be found at: http://www.extropia.com/tutorials/security/index.html An excellent all-round introduction to Perl and CGI Scripting can be found in the Perl CGI FAQ, http://language.perl.com/CPAN/doc/FAQs/cgi/perl-cgi-faq.html written by Tom Christiansen (tchrist@perl.com) and Shishir Gundavaram (shishir@ora.com).