- unserialize: documentation ( source)
- phpinfo: documentation ( source)
<?php
function my_unserialize($data)
{
$array = unserialize($data);
if(!is_array($array))
{
$array = array();
}
return $array;
}
class ryat {
function __destruct() {
phpinfo();
}
}
$str = 'O:4:"ryat":0:{}';
my_serialize($str);