I will conduct penetration testing and vulnerability assessment

C
cybersalman
C
cybersalman
Salman Y

About this gig

Secure your web application now find and fix vulnerabilities before they become breaches.

I will perform a comprehensive Vulnerability Analysis & Penetration Test (VAPT) focused on your web app and authentication flows. My testing follows industry best practices and delivers reproducible findings, prioritized by risk and accompanied by practical remediation steps.

What I test

  • Injection flaws (SQLi, command injection) and input validation issues.
  • Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF).
  • Authentication and session management weaknesses (login, reset, MFA bypass attempts).
  • Outdated or vulnerable libraries and dependencies.
  • Dark web checks for compromised credentials related to your site.
  • Open ports and exposed services on your hosting environment.
  • Email deliverability/security issues (SPF, DKIM, DMARC misconfigurations).
  • SSL/TLS and certificate misconfigurations.
  • Exposed subdomains and expanded attack surface.
  • IP & domain intelligence, including basic malware/blacklist checks.

Deliverables

  • Professional VAPT report with executive summary and technical findings.
  • Reproducible proof-of-concept (screenshots, request/response examples) for each confirmed issue.
  • Risk
Respect third-party rights

Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.

Get to know Salman Y

Salman Y

Ethical Hacker , Web Penetration Tester , OWASP Top 10 Specialist

  • FromPakistan
  • Member sinceMar 2025
  • Avg. response time1 hour
  • Languages

    Pashto, Urdu, English, Arabic
I am a cybersecurity professional specializing in web application penetration testing and ethical hacking. I help businesses identify, exploit, and remediate security vulnerabilities before attackers do, following OWASP Top 10 and real-world testing methodologies. I perform manual testing for SQL Injection, XSS, CSRF, IDOR, authentication flaws, and security misconfigurations, and deliver clear vulnerability reports with proof of concept and remediation steps. Tools include Kali Linux, Burp Suite, Metasploit, Nmap, OpenVAS, Nikto, and Wireshark. let's work together.