Solved

Code Review Software

Posted on 2013-01-18
5
289 Views
Last Modified: 2013-01-21
Hi,

i have an application that allows users to login and update sensative information as well as upload download content.

i would like to know if there is a good software out there that can look over my code and determine if there are some loops.

essentially i want to have a product that will do basic scans, prentration and vunerability scans  before i pay a professional to look over it

thanks a lot
0
Comment
Question by:M. Jayme Nagy
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
5 Comments
 
LVL 6

Author Comment

by:M. Jayme Nagy
ID: 38793574
the code i am looking to be reviewed is php
0
 
LVL 64

Assisted Solution

by:btan
btan earned 334 total points
ID: 38795840
0
 
LVL 38

Assisted Solution

by:Rich Rumble
Rich Rumble earned 166 total points
ID: 38796382
There are some tools out there as well that look at your source
PHP Code Sniffer, PHP Sat, PHP AST, PHP Lint, PHP Depend, xDebug
Often these tools however do not detect what you're aiming to detect, and they certainly don't secure your code. There are a lot of do not do's in PHP and coding in general. Scan your web application using Nessus/MetaSploit/W3af/Nikito. If you use MySQL or MSSQL you can use SQLNinja (ms only) and or SQLmap to detect injections. Have a look here
http://www.coresec.org/2011/07/18/sql-injection-scanners/
-rich
0
 
LVL 64

Accepted Solution

by:
btan earned 334 total points
ID: 38797552
Specific to owasp top 10 vulnerability for php and php security open consortium sharing of specific gaps ..you can check this out below

http://www.sklar.com/page/article/owasp-top-ten
http://phpsec.org/projects/guide/

Tools wise you may want to see RIPS or DevBug

http://sourceforge.net/projects/rips-scanner/
http://www.devbug.co.uk/#
0
 
LVL 6

Author Closing Comment

by:M. Jayme Nagy
ID: 38801321
thanks everyone BIG help!!!
0

Featured Post

Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

JavaScript has plenty of pieces of code people often just copy/paste from somewhere but never quite fully understand. Self-Executing functions are just one good example that I'll try to demystify here.
This article investigates the question of whether a computer can really be cleaned once it has been infected, and what the best ways of cleaning a computer might be (in this author's opinion).
Viewers will learn about the regular for loop in Java and how to use it. Definition: Break the for loop down into 3 parts: Syntax when using for loops: Example using a for loop:
The viewer will learn the basics of jQuery including how to code hide show and toggles. Reference your jQuery libraries: (CODE) Include your new external js/jQuery file: (CODE) Write your first lines of code to setup your site for jQuery…

626 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question