I will web application and API penetration testing


About this gig
I am a PNPT-certified penetration tester with over 3 years of hands-on offensive security experience, currently working full-time as a penetration tester for a security firm.
What I test:
- Web applications OWASP Top 10, business logic flaws, authentication bypass
- REST and GraphQL APIs IDOR, broken access control, rate limiting
- Android and iOS mobile apps insecure storage, SSL pinning bypass
- AI and LLM systems prompt injection, RAG poisoning, excessive agency
What you receive:
A professional PDF report documenting every finding with reproducible proof-of-concept steps, CVSS severity scoring, OWASP category mapping, business impact analysis, and clear remediation guidance your developers can act on immediately. An executive summary is included for non-technical stakeholders.
Every finding is manually verified. No automated scanner output, no false positives wasting your team's time.
Before ordering: Please message me with your target so I can confirm scope and timeline. I only test assets you own or have written authorization to test.
Respect third-party rights
Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.
Get to know Hamza
Penetration Tester
- FromPakistan
- Member sinceAug 2026
- Avg. response time1 hour
Languages
Pashto, English, Urdu, Punjabi
