PHPIDS: Web Application Security

Discussion in 'Site & Server Administration' started by sarahk, Apr 6, 2008.

  1. #1
    I've just taken a look at http://php-ids.org and was wondering how widely used it is, if it's as robust as they make out. Certainly seems to have a userbase but when it comes to security you need to be thorough.

    And if you're not using PHPIDS on your php sites, what are you using and recommending?
     
    sarahk, Apr 6, 2008 IP
  2. SSANZ

    SSANZ Peon

    Messages:
    861
    Likes Received:
    10
    Best Answers:
    0
    Trophy Points:
    0
    #2
    Its ok, it does the job its good in combination with mod_sec if you can get them to co-operate ;)
     
    SSANZ, Apr 6, 2008 IP
    sarahk likes this.
  3. sarahk

    sarahk iTamer Staff

    Messages:
    28,921
    Likes Received:
    4,561
    Best Answers:
    124
    Trophy Points:
    665
    #3
    Thanks for the tip. I'll take a look at http://www.modsecurity.org/

    PHPIDS came cakephp ready which caught my attention. I'll take a good long look at both and run some tests.

    thanks!
     
    sarahk, Apr 6, 2008 IP
  4. SSANZ

    SSANZ Peon

    Messages:
    861
    Likes Received:
    10
    Best Answers:
    0
    Trophy Points:
    0
    #4
    Check out goolag scanner, i posted it on the forums earlier.

    Regards,
    SSANZ
     
    SSANZ, Apr 7, 2008 IP