PHP: mysql_real_escape_string - Manual
(edit: by that i mean the function mysql_real_escape_array())
I use that in all of my applications when i have large amounts of posts. However it doesn't work when passing arrays through POST, such as multiselect boxes or multiple checkboxes; it will null the array. Haven't figured out why yet

__________________
Mark
Surpass Hosting Developer
sɹnoʎ uɐɥʇ ɹǝʇʇǝq sı bıs ʎɯ