Securing PHP code: A Parsing Approach

Alokam Meghana, Bilakanti Vanshika, Karnam Veda Samhitha, Keerthana Murali, Meena Belwal · 2024

Securing PHP code: A Parsing Approach aims to design PHP source code particular parser with the help of Python Lex-YACC to identify the security flaws in PHP Source Code. This tool is used to recognize general threats like, SQL Injection, Cross-Site Scripting, Remote Code Execution, XML External Entities, and Objects Injection by analyzing scripts with defined lexers and parsers for each threat. The embodied features and components of the software system consist of input and output directories for scripts and script parsers dependent on the security risk, and the security analysis toolkit. Through the application of early detection during the development process, the tool provides the following benefits: improving the security of the developed software and also helping in the prevention of potential threats by cyber attackers thus encouraging the development of more secure applications. Considering the security analysis of the PHP files After the completion of security analysis on the PHP files, output reports for each PHP file are prepared.

Read the paper · More papers on PaperTik