Book Image

Mastering MeteorJS Application Development

By : Arturas Lebedevas, Jebin BV
Book Image

Mastering MeteorJS Application Development

By: Arturas Lebedevas, Jebin BV

Overview of this book

The web is dead – applications now rule our online experiences. But how are you going to build them? Well, if you’ve been paying attention, you might already have tried your hand with MeteorJS, the JavaScript framework that helps you build complete full-stack web applications that are responsive and fast with ease. Mastering MeteorJS Application Development shows you how to do even more with MeteorJS – if you’re ready to try a comprehensive course through one of the most exciting frameworks in web development today, this is the book you need. Designed to take you through the entire process of building an advanced multipage application with Meteor, you’ll be able to bring your web development ideas with surprising ease. You’ll not only learn how Meteor makes web development easier, but also how you can make using Meteor easier, by automating and simplifying tasks so you can be confident you have full control of everything in your workflow – especially everything that could go wrong. From automated testing to integrating other useful frameworks such as Angular and D3, each chapter covers a crucial element in the Meteor development process. Discover how to integrate animations using Meteor’s Blaze, to give your UI designs the edge, and explore reactive programming to effectively harness RESTful systems in your projects. You will also learn how to deploy and scale your application, two crucial aspects of modern development and vital in a changing digital environment with users expecting a product and experience that delivers. With further insights on developing for mobile – and how Meteor can help you tackle the challenges of the trend – and details on incorporating SEO strategies into your application, this book isn’t just a code tutorial – it’s about creating a product that users love.
Table of Contents (11 chapters)
10
Index

Securing database operations


It is needless to say how important it is to verify every piece of data before inserting or updating it in the database. From the beginning, it has been said, don't believe the inputs from the users. We have heard about SQL injection, XSS injections, and many more such kinds of attacks that succeed due to not verifying the data against the necessary validation logic.

Whenever there is access to a database-related operation without any abstraction layer, the developers must be very cautious about the data. It is better to write the database operation code, as if it is defensive to malicious inputs. In the case of SQL, rather than writing raw queries and executing them, it is good to use prepared statements, which will save us, at least from the basic SQL injections. MongoDB doesn't have prepared statements. We always tend to frame a query and pass it to the operation methods (find, update, and remove).

Attackers can try to attack for various purposes. One would...