New PHP Exploit Chain Highlights Dangers of Deserialization

PHP unserialization attacks have been well known for some time, but a new exploitation method explained last week at Black Hat USA in Las Vegas demonstrated that the attack surface for PHP unserialization is broader than originally thought. “What I presented was basically a new way to start an unserialization attack,”

Read full news article on Dark Reading