prepare("SELECT * FROM users WHERE username = ?"); $stmt->execute([$username]); $user = $stmt->fetch(); // SHA256验证 if ($user && hash('sha256', $password) === $user['password']) { $_SESSION['user_id'] = $user['id']; $_SESSION['username'] = $user['username']; return true; } return false; } // 强制登录检查 function requireLogin() { if (!isLoggedIn()) { header("Location: login.php"); exit; } }