My thoughts and opinions on programming. Please like or dislike my posts and feel free to leave comments especially if you feel the post could be improved.
Most people have their MySQL connection strings and other important data in a config/functions file in the main public_html directory. One badly set permission, or even a server glitch, can cause this file to become exposed leaving it vulnerable to direct attack via URL.