deioncube.xyz


Security Analysis of PHP Bytecode Protection Mechanisms

Date: 18/08/22
Dario Weißer, Johannes Dahse , and Thorsten Holz.

PHP is the most popular scripting language for web applications. Because no native solution to compile or protect PHP scripts exists, PHP applications are usually shipped as plain source code which is easily understood or copied by an adversary. In order to prevent such attacks, commercial products such as ionCube, Zend Guard, and Source Guardian promise a source code protection.

In this paper, we analyze the inner working and security of these tools and propose a method to recover the source code by leveraging static and dynamic analysis techniques. We introduce a generic approach for decompilation of obfuscated bytecode and show that it is possible to automatically recover the original source code of protected software. As a result, we discovered previously unknown vulnerabilities and backdoors in 1 million lines of recovered source code of 10 protected applications.


Written by: admin
Share this news:

Contacts

 

    > Send your files and Chat 24/7:

    1. Sign up
    2. Get the Element app or Web-version
    3. Click or find us there: Deioncube

    > Click to Send Email / files:

     
    In some cases, contact information may be updated.

Scan or click the code

 
Deioncube qr-code link