Martin Paul Eve bio photo

Martin Paul Eve

Professor of Literature, Technology and Publishing at Birkbeck, University of London

Email Books Twitter Github Stackoverflow MLA CORE Institutional Repo ORCID ID  ORCID iD Wikipedia Pictures for Re-Use

For those who haven't yet seen this, .mario and christ1an over at sla.ckers has been working on a PHP Intrusion Detection System and the results are fairly promising! The system is based on regular expressions and seems to catch everything I've jammed into it so far. Here's an example of catching a JavaScript event handler:

rule: (on\w+\s*=.*\\?([("|'|`)]|\>)?)

rule-description: detects possible event handlers

impact: 4

Check out the Google Group and the live sandbox for more.