I will be your web penetration tester and security expert


Level 2
About this gig
Need a professional web penetration tester to identify security vulnerabilities?
I'm Hamza (HamXo), a cybersecurity-focused Full Stack Developer with experience in web security and OWASP Top 10 testing.
I can help with:
- Web penetration testing
- OWASP Top 10 vulnerability testing
- Security assessment
- Authentication and authorization testing
- Input validation and injection testing
- API security testing
- Security configuration review
- Vulnerability identification and reporting
- Practical remediation recommendations
I'm CompTIA Security+ certified and Google Professional Ethical Hacker certified.
All testing is performed only on systems you own or have explicit authorization to test.
You'll receive clear findings, evidence, risk details, and recommendations to help secure your application.
Send me your scope and requirements to get started.
Respect third-party rights
Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.
Get to know Hamxo
Full Stack Developer, Shopify, WordPress and AI Automation Expert
Level 2
- FromPakistan
- Member sinceSep 2022
- Avg. response time1 hour
- Last delivery2 months
Languages
English, Urdu
My Portfolio
FAQ
What types of applications can you test?
I can test authorized websites, web applications, APIs, and related web infrastructure.
Do you test for OWASP Top 10 vulnerabilities?
Yes. OWASP Top 10 is a major part of my web application security testing.
Will I receive a security report?
Yes. I provide a clear report covering findings, evidence, risk levels, and recommended remediation.
Can you test APIs for security vulnerabilities?
Yes. I can assess authorized APIs for common authentication, authorization, input validation, and other security issues.
Do you require authorization before testing?
Yes. You must own the target or have explicit permission to conduct security testing.

