Thread
Stories related to "Building Secure PHP Apps" across the full archive.
Detecting potentially malicious PHP code using checksums and heuristics on parse trees
(blog.garage-coding.com)
Includes 5 CVEs fixed in mbstring module (oniguruma)
"Wherein existing techniques for building secure systems are examined and found wanting" (2000)
(cypherpunks.to)
h/t @nickpsecurity for the fantastic find. From "The Design and Verification of a Cryptographic Security Architecture", found [here](https://researchspace.auckland.ac.nz/bitstream/handle/2292/2310/02whole.pdf?sequence=2).