Loading...
Loading...
Found 4 Skills
PHP Web Security Logging and Monitoring Audit Tool. Identifies missing security events, sensitive data written to logs, log injection/forgery risks, and flaws in log and alert links, and outputs exploitability ratings, observable PoCs, and remediation recommendations (no omissions allowed).
Security Audit Tool for ThinkPHP Framework Special Features. Conducts white-box static audits on common mechanisms of ThinkPHP such as authentication/CSRF/template escaping/ORM writing (Mass Assignment)/debugging and configuration exposure, and maps to a general vulnerability type system (AUTH/CSRF/TPL/XSS/LOGIC/CFG/SESS/SQL, etc.).
PHP Web Source Code File Upload Audit Tool. Identify upload entry points and save paths, filename processing and validation logic, detect risks such as arbitrary file upload/path traversal/executable file upload, and output exploitability ratings, PoC and repair suggestions (omission is prohibited).
PHP Web Source Code Encryption and Key Security Audit Tool. Identifies weak hashes/weak encryption/hardcoded keys/signature verification flaws, and outputs severity levels, PoCs and remediation recommendations (omission is prohibited).