I will audit and harden your dotnet application security


About this gig
Most .NET applications have security gaps that stay invisible until they're exploited. I review ASP.NET Core codebases for the vulnerabilities that actually get hit in production: broken authentication and authorization logic, EF Core injection risks, misconfigured CORS and security headers, exposed secrets, and insecure API design.
What you get:
A clear, prioritized vulnerability report (critical to low)
Practical, specific remediation steps for each finding
Optional: I implement the fixes directly (Standard/Premium)
Built on hands-on .NET 8/9 and ASP.NET Core experience, so I know where these frameworks tend to get misconfigured in real projects.
Ideal for SaaS platforms, client-facing apps, or any .NET codebase you inherited and aren't fully confident in.
Get to know Aaban Rehman
AI, Security Specialist, and Backend Architecture
- FromPakistan
- Member sinceDec 2022
Languages
Urdu, English
FAQ
What do you need from me to start?
Read-only access to your repository (GitHub/GitLab/Azure DevOps) and a brief note on your app's purpose and any known concerns.
Do you sign an NDA?
Yes, happy to sign one before reviewing your code.
What if you find something outside the package scope?
I'll flag it in the report regardless. Fixing it beyond the included scope would need a custom offer.
Can you audit non-.NET parts of my stack (frontend, infra)?
My core expertise is the .NET/ASP.NET Core backend. I can flag obvious frontend/infra issues but the deep audit is backend-focused.

