Which approach best prevents SQL injection attacks in an e-commerce product search feature?
-
A
Disabling the search feature entirely
-
B
Using parameterized queries or prepared statements
-
C
Storing all product names in uppercase
-
D
Limiting search results to 10 items