I've just taken a look at http://php-ids.org and was wondering how widely used it is, if it's as robust as they make out. Certainly seems to have a userbase but when it comes to security you need to be thorough. And if you're not using PHPIDS on your php sites, what are you using and recommending?
Thanks for the tip. I'll take a look at http://www.modsecurity.org/ PHPIDS came cakephp ready which caught my attention. I'll take a good long look at both and run some tests. thanks!