PHPIDS - get it!

PHPIDS 0.2.3 is close

Article written by .mario

We are currently working on PHPIDS 0.2.3 which will be a pure feature release. We mostly optimized the algorithm to detect encoded payload. The PHPIDS will be able to correctly detect payload with decimal, octal and hexadecimal encoding – check out the demo-links below to preview this feature:

Javascript charcode injection

Octal charcode injection

Hexadecimal charcode injection

Also we optimized the rules again, added detection for mail header injections, the firefoxurl code execution attack and removed dozens of false alerts. We expect the release to happen around Wednesday – stay tuned!

Leave a Reply