I will perform penetration testing web vulnerability assessment and security audit


About this gig
Web Application Penetration Testing & Security Audit
Protect your website with a professional security assessment. I identify security vulnerabilities through manual and automated testing and provide a clear report with remediation recommendations.
️ Tests include:
- SQL Injection (SQLi)
- Cross-Site Scripting (XSS)
- OS Command Injection
- Local/Remote File Inclusion (LFI/RFI)
- Server-Side Request Forgery (SSRF)
- Cross-Site Request Forgery (CSRF)
- Broken Authentication / Session Fixation
- IDOR (Insecure Direct Object Reference)
- Insecure Deserialization
- JWT & cookie weaknesses
- Open Redirects
- Prototype Pollution
- Remote Code Execution (Log4j, ViewState, Template Injection)
- HTTP Request Smuggling
- Directory Traversal
- CORS misconfigurations
- Exposed admin/login panels, backup files
- Outdated JavaScript libraries
- Misconfigured HTTP headers, cookies, TLS
Why Choose Me?
- Professional & Methodical Approach
- Detailed PDF Report with Proof of Concepts (POC)
- Focus on both automated scanning and manual exploitation
- High attention to confidentiality and security
- Bug Bounty Ready: Optimization for HackerOne & other bug bounty submission standards.
Note: Please contact me before placing an order.
Respect third-party rights
Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.
Get to know Asad Nasrullah
Cybersecurity specialist and WordPress security expert
- FromBangladesh
- Member sinceJun 2026
Languages
Bengali, English, Arabic
FAQ
What is penetration testing, and why do I need it?
Penetration testing is a simulated cyberattack to identify vulnerabilities in your website or application. It helps you fix security issues before hackers can exploit them, ensuring your website remains secure and trustworthy.
What is required for the penetration test?
Domain Name (e.g., www.example.com) to identify the target system. Login Credentials (if needed) for testing restricted areas. Testing Scope to define what will be tested (e.g., subdomains, features). Access Permissions to ensure legal and ethical testing.
Do you use automated scanners or manually scanning?
I use both automated scanning tools for initial discovery and thorough manual testing to identify complex logic flaws and eliminate false positives.
What is your qualification?
I am a certified Cybersecurity professional with extensive practical experience in Web Application Security Testing and Penetration Testing.
What language do you support?
I can test websites in any language and I communicate in English.
What is your Penetration Testing and vulnerability Assessment methodology?
I follow industry-standard methodologies such as OWASP Top 10 and NIST frameworks, combining automated vulnerability scanning with deep manual exploitation.
Will you hack someone for me to gain access to their privileged information?
Absolutely not! Any requests to perform illegal activities will be denied. No exceptions.

