I will perform professional penetration testing and security audit

S
sajalchowdhu300
S
sajalchowdhu300
Sajal Chowdhury

About this gig

Secure Your Web Application Before Hackers Exploit It!


Automated scanners miss critical business logic flaws. As an advanced cybersecurity specialist, I perform deep manual penetration testing and security audits to hunt down vulnerabilities before malicious actors find them.



Advanced Flaws I Audit:


Injection Vulnerabilities: In-depth testing for SQLi (including Blind SQLi) & Command Injections.


Client-Side Risks: Comprehensive hunt for XSS (Stored/Reflected) and CSRF flaws.


Server Manipulation: Finding Server-Side Request Forgery (SSRF) & LFI/RFI leaks.


Authentication Flaws: Auditing broken logins, JWT tokens, and privilege escalation.


OWASP Top 10: Thorough mapping against the latest web security standards.


What You Will Receive:


Technical PoC Report: Step-by-step evidence of found vulnerabilities with zero false positives.


Remediation Roadmap: Actionable patch guidance to secure your code.

Respect third-party rights

Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.

Get to know Sajal Chowdhury

Sajal Chowdhury

Web Security Engineer and Vulnerability Assessment Analyst

5.0(1)
  • FromBangladesh
  • Member sinceAug 2023
  • Last delivery1 year
  • Languages

    Bengali, English
Focusing on deep exploration of web application flaws and client-side security gaps. My approach involves looking past the surface to find how input errors, broken session tracking, and authentication issues compromise platforms. The core of my workflow relies on rigorous manual analysis. Instead of depending on automatic scan dumps, I use intercept tools like Burp Suite alongside utilities like WPScan and SQLMap to inspect traffic. I perform deep validation for XSS issues, evaluate hidden parameters to stop CSRF, and check backend layouts against SQL Injection.

My Portfolio