PHP Vulnerability Hunter

PHP Vulnerability Hunter is an advanced whitebox PHP web application fuzzer that scans for several different classes of vulnerabilities via static and dynamic analysis. By instrumenting application code, PHP Vulnerability Hunter is able to achieve greater code coverage and uncover more bugs.

PHP Vulnerability Hunter can detect the following classes of vulnerabilities:

  • Arbitrary command execution
  • Arbitrary file read/write/change/rename/delete
  • Local file inclusion
  • Arbitrary PHP execution
  • SQL injection
  • User controlled function invocatino
  • User controlled class instantiation
  • Reflected cross-site scripting (XSS)
  • Open redirect
  • Full path disclosure

