I find it best to use HTML Encode and Decode. In fact, for security reasons, you should always use HTMLEncode and HTMLDecode when saving large areas of text to stop XSS scripting and SQL Injection.
SqlCommand com = new SqlCommand("insert into Table_Name values('" + Server.HtmlEncode(textBox57.Text +"')", con));
To Save to Database:
https://msdn.microsoft.com/en-us/library/w3te6wfz%28v=vs.110%29.aspx
To Display from Database:
https://msdn.microsoft.com/en-us/library/7c5fyk1k%28v=vs.110%29.aspx