PHP代码审计比较推荐RIPS,是一款自动化代码审计工具,下载链接:https://sourceforge.net/projects/rips-scanner/
1、PHP代码审计用 RIPS https://sourceforge.net/projects/rips-scanner/
2、JAVA代码审计用 findbugs http://findbugs.sourceforge.net/downloads.html https://www.jianshu.com/p/c43940c4e025
3、 .net https://security-code-scan.github.io/
4、多种语言代码检查工具 sonar: https://docs.sonarqube.org/display/SONAR
https://www.sonarsource.com/products/codeanalyzers/sonarjava/rules.html#Vulnerability_Detection
https://github.com/SonarSource/sonarqub
5、fortify 这个也是很好用的