![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEg_XVBx1qF3juIXW-PQSuCMOZx24MJBUTvchJWPLa9b5qCqVrzeBY_-Lfcb1HE2xkLXVXJK_JiqyWidnjPoDwz8Ej3dJaU80dvpsj4UlxZ8C7p4ejeeleZ0IrMZLvbkiM-jFqUkL2faqyg/s200/rips-logo.png)
RIPS - A static source code analyser for vulnerabilties in PHP scripts
RIPS is a static source code analyser for vulnerabilities in PHP webapplications. It was released during the Month of PHP Security (www.php-security.org)
RIPS is written in PHP itself and can be controlled by a webinterface
Some features:
* detect XSS, SQLi, File disclosure, LFI/RFI, RCE vulnerabilities and more
* 5 verbosity levels for debugging your scan results
* mark vulnerable lines in source code viewer
* highlight specific variables in source code viewer
* user-defined function code by mouse-over on detected call
* list of all user-defined functions and program entry points (user input) connected to the source code viewer
* create CURL exploits for detected vulnerabilties with few clicks
* 7 different syntax highlighting colour schemata
* only minimal requirement is a local webserver with PHP and a browser (tested with Opera and Firefox)
Download: http://sourceforge.net
{ 0 komentar... Views All / Send Comment! }
Posting Komentar