Spike PHP Security Audit Tool

Spike PHP Security Audit Tool project is a tool that performs a static analysis of PHP code for security exploits.
Download

Spike PHP Security Audit Tool Ranking & Summary

Advertisement

  • Rating:
  • License:
  • Open Software License
  • Price:
  • FREE
  • Publisher Name:
  • SpikeSource, Inc.
  • Publisher web site:
  • http://developer.spikesource.com/wiki/index.php/Projects:JSBlend

Spike PHP Security Audit Tool Tags


Spike PHP Security Audit Tool Description

Spike PHP Security Audit Tool project is a tool that performs a static analysis of PHP code for security exploits. Spike PHP Security Audit Tool project is a tool that performs a static analysis of PHP code for security exploits.Usage:To install, unzip Spike phpSecAudit package. > unzip spike_phpSecAudit.zipChange directory to your php repository. > cd /path/to/code/to/auditExecute the run.php, passing the file name or directory to audit. > php /path/to/spike_phpSecAudit/run.php test_file.php or > php /path/to/spike_phpSecAudit/run.php dir_nameWhat's New in This Release:· Modified to be PHP 4 friendly.· A few functions have been added to the knowledge base: extract, shell_exec, pcntl_exec, and exec.· The organization of the knowledge base file (vuln_db.xml) has been slightly improved.· The _getAllPhpFiles function may miss a few (unverified).· The tokenizer needs to be able to differentiate between a native function call and class method call of the same name, i.e. mail() and $class->mail().


Spike PHP Security Audit Tool Related Software