PHPIDS 0.2.3 is close
Article written by .mario
We are currently working on PHPIDS 0.2.3 which will be a pure feature release. We mostly optimized the algorithm to detect encoded payload. The PHPIDS will be able to correctly detect payload with decimal, octal and hexadecimal encoding - check out the demo-links below to preview this feature:
Hexadecimal charcode injection
Also we optimized the rules again, added detection for mail header injections, the firefoxurl code execution attack and removed dozens of false alerts. We expect the release to happen around Wednesday - stay tuned!

