<PhpSecInfo> PhpSecInfo provides an equivalent to the phpinfo() function that reports security information about the PHP environment, Tutorial de como mejorar la seguridad en una web (Autor: GracuM)
Bloquear ataques XSS y SQL Injection Secure Token Grid Authentication - crea una tabla de codigos de seguridad tipo RURALVIA
<HTML Purifier> HTML Purifier is PHP software for HTML filtering. It is an alternative to BBCode or other obscure custom markup languages. It will not only remove all malicious code (XSS), but will also make sure the HTML is standards compliant. 15 herramientas gratuitas para detectar vulnerabilidades de Inyección de SQL
Proteger carpetas con .htaccess y .htpasswd<Mafia Session> Mafia Session - Secure user authentication encrypting password
<InjectionDenied> InjectionDenied is a python program that blocks PHP and SQL attacks by adding entries to /etc/hosts.deny (it works like DenyHosts with SSH). The daemon inform the admin about the new block host by mail. El TOP 20 de vulnerabilidades de Internet.
<HTTP_REFERER> Ataque a través de HTTP_REFERER<phpguardian> phpGuardian encodes PHP source code and logs the server information to check if the script is running in another server. This can be useful in the event that the script has been duplicated without authorization. In response, it can then optionally execute arbitrary code which could be used to lock execution.
<Spike PHP Security Audit Tool> Spike PHP Security Audit Tool is a tool that performs a static analysis of PHP code for security exploits.

