PkgRadar

Composer · packagist.org

aghfatehi/laravel-zatca

Php Base64 Eval Chain: base64/gz/hex decode combined with eval/exec/backticks — classic PHP obfuscated payload.

Why PkgRadar flagged v1.3.0

SeveritySignalEvidence
highPhp Base64 Eval Chainbase64/gz/hex decode combined with eval/exec/backticks — classic PHP obfuscated payload. · aghfatehi-laravel-zatca-aa0384a/src/Services/CertificateService.php
highPhp Shell With Decodeexec / system / shell_exec combined with base64/hex decode. · aghfatehi-laravel-zatca-aa0384a/src/Services/CertificateService.php

Scanned versions

VersionVerdictScoreScanned (UTC)
v1.3.0High risk752026-06-06
v1.4.0High risk752026-06-06
v1.1.0High risk752026-06-03

Related campaigns

Block this in CI

PkgRadar gates aghfatehi/laravel-zatca (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem composer aghfatehi/[email protected]