http://php.vrana.cz/obrana-proti-sql-injection.php
http://www.tizag.com/mysqlTutorial/mysql-php-sql-injection.php
http://www.experts-exchange.com/Security/Vulnerabilities/Q_24175455.html
http://www.learnphponline.com/security/sql-injection-prevention-mysql-php
http://www.php.net/manual/en/function.mysql-real-escape-string.php