I will do web application penetration testing and security audit
Cyber Security Expert, Penetration Tester, Bug Bounty Hunter
About this Gig
Is your web application truly secure?
I'm Shahadat Fahim a certified penetration tester (eJPT, CRTA) recognized in the Hall of Fame by companies in the UK, Belgium, and the US.
WHAT I TEST:
- OWASP Top 10 vulnerabilities
- IDOR and Business Logic Flaws
- Authentication and Authorization Bypass
- XSS, SQLi, CSRF
- API Security and JWT Attacks
- Sensitive Data Exposure
WHAT YOU GET:
- Professional PDF report
- CVSS severity scores
- Full Proof of Concept with screenshots
- Step by step remediation guidance
- Free retest after fixes
Manual testing only. No automated scanner dumps.
Message me before ordering to discuss your scope.
My Portfolio
FAQ
Do you need access to my source code?
No. I perform black-box testing from an attacker's perspective without source code access.
Will my website go down during testing?
No. I use safe, non-destructive testing methods that will not affect your website availability.
What do I get after the test is complete?
You receive a professional PDF report with all findings, CVSS scores, screenshots, and step by step remediation guidance.

