Hi all i hear alot about sql injection. Could an expert tell me how that works and how to avoid it. i am making php scripts that deal with mysql db and i want to make it secure but i do not where to start. I be happy if an expert guide me here.Thanks