RIPS is a static source code analyser for vulnerabilities in PHP webapplications. It was released during the Month of PHP Security (www.php-security.org).
NOTE: RIPS 0.5 development is abandoned. A complete rewrite is in development and used as an academic prototype but it is not publicly available yet.
Download the latest .zip file Extract the files to your local webservers docroot Make sure your file permissions are set Open your browser at http://localhost/rips-xx/ Read instructions on startpage and start scanning