To strengthen the security of our site and ensure data security, we have developed a specific bundle for Ibexa DXP, called "PHP scan antivirus". This bundle is designed to protect data transmitted via forms by scanning attachments for potential threats.
The "PHP scan antivirus" bundle
The module is based on an open-source php script that offers virus, Trojan horse or malware detection capabilities in downloaded files. The bundle is updated with ClamAV virus signatures.
Our teams have integrated this resource directly into Ibexa DXP 4.6. It works from version 4.X onwards.
How the bundle works
We have integrated the script into the inforca site at the level of the application forms. It enables us to analyse attached files (CV, covering letter) in real time. Each document is scanned by the module to detect and block threats before they reach our servers.
During our test phases, we imported a fake fraudulent "EICAR" file and then used a debug that displays the following message to detect the virus.
On the front end and without debugging, the message below appears, blocking the import and warning the user that the file is malicious.