Stars
PHP Static Analysis Tool - discover bugs in your code without running it!
Phan is a static analyzer for PHP. Phan prefers to avoid false-positives and attempts to prove incorrectness rather than correctness.
PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.
Beautiful and understandable static analysis tool for PHP
A collection of PHP backdoors. For educational or testing purposes only.
[READ ONLY] Report generation for Tombstones created with the scheb/tombstone-logger library
This code demonstrates how to get code coverage for your php code, when it is test through a browser
lightweight PHP-cli app that parses the Apache access log and saves it to a mysql (PDO) database.
Backdoor projects that use composer (exploit https://github.com/composer/composer/issues/1074)