How to check php vulnerability?
A friend asked me to help, fill his code in my server. I filled it and there was a wso php shell. I cut everywhere but probably even left their wso. Is there any utility under linux to check all php files I have 12K on all kinds of vulnerabilities shells, etc?
6 answers
Other friends?
A friend in shell, heh.
maldet. it uses the ClamAV database, but works faster.
also it makes sense to run rkhunter.
When I worked in hosting this bunch was enough to check the server website for rootkits and Shelah
Usually just restart the deployment of the application on the server and remove the old version.
But, apparently, you even have no backups.
MalDet and AI-Bolit will help you.
Find more questions by tags LinuxPHPUbuntu