I will perform web and API penetration testing and vulnerability assessment

Pakistan

I speak Urdu, English

Offensive Security Expert

Offensive Security Professional with 5+ years of experience in penetration testing and application security across web, mobile, API, thick-client, network, cloud, and Active Directory environments. OS...
About this Gig

Are you looking to secure your web application or API before launch? Do you need a professional penetration test to ensure your business and customer data remain safe from hackers?

I am an OSCP+ and CRTP certified Application Security Engineer with 5+ years of professional experience in offensive security, penetration testing, and vulnerability management. I help businesses identify critical security flaws before malicious actors can exploit them.

What I Will Test For:

  • OWASP Top 10 Vulnerabilities (SQL Injection, XSS, CSRF, IDOR, SSRF, Broken Authentication)
  • API Security Weaknesses (BOLA, Broken Authorization, Rate Limiting, Data Exposure)
  • Business Logic & Privilege Escalation Flaws
  • Insecure Server & Cloud Configurations

What You Will Receive:

  1. Detailed Technical Report: Clear breakdown of all identified vulnerabilities ranked by risk severity (Critical, High, Medium, Low).
  2. Proof-of-Concept (PoC): Step-by-step evidence and screenshots demonstrating how the flaw was identified.
  3. Developer-Friendly Remediation: Practical guidance on how to fix and patch each security gap effectively.
  4. Post-Fix Retesting: (Available in Premium) Verification to ensure patches were properly imple