
Đã đóng
Đã đăng vào
I need a methodical penetration test of my public-facing web application. Your engagement should be hands-on: actively probe the site, enumerate attack vectors and exploit them where possible. I am particularly interested in anything you can surface through Metasploit modules, so feel free to lean on that framework alongside tools such as Burp Suite, Nmap, or OWASP ZAP if they help deepen coverage. Scope • Black-box testing of the full web stack (no mobile or internal network assessment). • Focus on discovering and exploiting vulnerabilities that matter in the real world, not just automated scanner noise. Deliverable A detailed report that lists each confirmed vulnerability, its risk rating, reproducible proof-of-concept evidence (screenshots, request/response pairs, payloads), and concise remediation guidance. Organise findings by severity so my dev team can triage quickly. Please work ethically, respect the application’s data, and document every step so I can reproduce your results. Let me know your estimated timeline and any information you’ll require before kicking off.
Mã dự án: 40349674
9 đề xuất
Dự án từ xa
Hoạt động 10 ngày trước
Thiết lập ngân sách và thời gian
Nhận thanh toán cho công việc
Phác thảo đề xuất của bạn
Miễn phí đăng ký và cháo giá cho công việc
9 freelancer chào giá trung bình $33 USD/giờ cho công việc này

Hello, I’m a Certified Ethical Hacker and Digital Forensics Consultant with 9+ years of experience in conducting hands-on web application penetration testing aligned with real-world attack scenarios. For your project, I will perform a comprehensive black-box assessment of your public-facing application, focusing on exploitable vulnerabilities rather than automated scanner noise. Approach: Recon & attack surface mapping using Nmap and manual enumeration In-depth testing via Burp Suite (manual + active testing) Targeted exploitation using Metasploit modules where applicable Validation of vulnerabilities with real-world attack scenarios (OWASP Top 10 aligned) Deliverables: Detailed report with severity-based classification (Critical → Low) Reproducible PoCs (requests/responses, payloads, screenshots) Clear risk impact explanation and actionable remediation steps Well-documented methodology for reproducibility Timeline: 5 - 7 days (depending on application size and complexity) Best regards, Kajal Majhi Cyber Security & Digital Forensics Consultant
$8 USD trong 40 ngày
4,9
4,9

Hi, I'm a Cyber Security Researcher with practical experience gained through playing CTFs (Capture The Flag), engaging in Bug Bounties, and working as a Pentester. Notice: Don’t ask me to hack something u don’t OWN What I can do for you: Web/API/Android (OWASP TOP 10) Pentesting: You can also get this service from here: https://www.freelancer.com/service/web_security/web-app-penetration-test-owasp-top Lets Chat…
$5 USD trong 40 ngày
4,8
4,8

We at Offensium Vault Private Limited (ISO 27001:2022 & ISO 9001:2015) can perform a methodical, hands-on black-box penetration test of your web application. Approach • Full attack surface enumeration and real-world vulnerability discovery • Manual exploitation aligned with OWASP Top 10 and PTES methodology • Use of Metasploit (focused), Burp Suite, Nmap, OWASP ZAP, and custom scripts • Validation of vulnerabilities with reproducible PoC evidence (no scanner-only findings) • Strict ethical, non-disruptive testing Deliverables • Detailed report with severity-based findings (Critical → Low) • PoC evidence (screenshots, request/response, payloads) • Clear remediation guidance for each issue • Fully reproducible steps for validation Timeline & Requirements • Timeline: 4–6 business days • Requirements: target URL, scope confirmation, test window, and optional credentials We focus on real exploitable risks, not false positives, and can start immediately once access is provided.
$7 USD trong 40 ngày
3,6
3,6

Hello, I can perform a thorough black-box penetration test of your web application, focusing on real, exploitable vulnerabilities rather than automated scan results. Using tools like Metasploit, Burp Suite, Nmap, and OWASP ZAP, I will identify, validate, and exploit relevant attack vectors where appropriate. You will receive a clear, well-structured report with severity ratings, proof-of-concept evidence, and practical remediation steps for your development team. I follow ethical testing practices and ensure all steps are documented and reproducible. I’m available to start and can share a timeline once I review the target scope. Best regards.
$5 USD trong 40 ngày
2,4
2,4

Hello, I can carry out a methodical black-box penetration test of your web application with a strong focus on real, exploitable vulnerabilities rather than surface-level scan results. Approach: • Recon & attack surface mapping (endpoints, inputs, auth flows) • Active testing using Metasploit Framework, Burp Suite, Nmap, and OWASP ZAP • Manual validation of findings (SQLi, XSS, IDOR, auth bypass, etc.) • Exploit reproduction where safely possible with clear evidence Deliverables: • Structured report with severity-ranked vulnerabilities • Proof of concept (screenshots, payloads, request/response pairs) • Clear reproduction steps • Practical remediation guidance for developers Timeline: • Initial findings: 3–4 days • Full report: within 7 days What I’ll need: • Target URL and scope confirmation • Permission for testing (written approval) • Any test accounts (optional but helpful) I follow ethical testing practices and document every step so your team can easily reproduce and fix issues. Ready to begin as soon as access is provided. Br,
$5 USD trong 40 ngày
1,9
1,9

With over a decade of experience in web development, I have developed an intimate understanding of the vulnerabilities that can be exploited online. My expertise includes, but is not limited to Web3 development using blockchain technology, rendering your web app highly secure. This comprehensive approach is what sets me apart from other freelancers. I don't just deliver a simple scan; I provide a detailed report identifying each vulnerability, its rating, proofs-of-concept (screenshots, payloads) and precise steps to mitigate it. I have hands-on experience with tools like Metasploit modules, Burp Suite and OWASP ZAP which aligns perfectly with your preference. My knowledge extends beyond regular black-box testing and automated scan-noise – I meticulously examine every layer of your web stack providing crucial insights for strategic patchwork. Lastly, in regards to ethical conduct, let me assure you that your data will be handled with utmost care and will be 100% confidential. You can rely on me to document every step, enabling easy reproduction of findings. I am certain that my meticulous and experienced approach combined with cutting-edge defensive measures will prove invaluable for your project's success.
$5 USD trong 40 ngày
0,0
0,0

Hello, I'd be happy to help with your project and make sure everything is done properly and reliably. I have experience with both manual and automated security testing, following OWASP Top 10 guidelines to find and fix potential vulnerabilities. I can deliver the full project within 14 days, including comprehensive testing, detailed documentation, and practical remediation steps.
$4 USD trong 40 ngày
0,0
0,0

As a highly skilled and seasoned cybersecurity professional, I believe I am the ideal candidate for conducting a comprehensive penetration test on your public-facing web application. With my extensive experience in web security, I possess an intimate understanding of the potential vulnerabilities and attack vectors that can leave your application exposed to possible breaches. In terms of tools, Metasploit holds no secrets for me and I have an expert command of complementary platforms such as Burp Suite, Nmap, and OWASP ZAP that enhance my ability to explore and exploit vulnerabilities effectively. Black-box testing is one of my strong suits, as is focusing on vulnerabilities that matter in the real world - I prioritize precision over automated scanner noise.
$250 USD trong 1 ngày
0,0
0,0

Colombo, Sri Lanka
Thành viên từ thg 4 5, 2026
$30-250 USD
₹600-1500 INR
$750-1500 USD
$30-250 USD
$250-750 USD
₹37500-75000 INR
₹1500-12500 INR
$25-50 AUD/ giờ
£1500-3000 GBP
$30-250 USD
$15-25 USD/ giờ
€250-750 EUR
$250-750 NZD
$30-250 USD
€65-70 EUR/ giờ
$10-200 USD
$10-30 USD
$30-250 USD
₹100-400 INR/ giờ
$10-30 USD