I will do wordpress security audit and penetration testing


About this gig
Is your WordPress website secure against modern cyber threats? Don't wait for a hacker to find outlet an expert test it first!
Website breaches can destroy your reputation, leak customer data, and cost thousands of dollars. As a cybersecurity and WordPress specialist, I will perform professional penetration testing and vulnerability assessments on your WordPress website to uncover security flaws before malicious hackers exploit them.
What I Will Test & Analyze:
- Vulnerability Assessment: Checking for outdated and vulnerable plugins, themes, and WordPress core files.
- Injection Testing: Identifying potential SQL Injection (SQLi), Cross-Site Scripting (XSS), and CSRF flaws.
- Authentication & Authorization Flaws: Testing login security, weak password policies, and user privilege escalation risks.
- File Inclusion & Misconfigurations: Scanning for exposed sensitive files, directory listings, and insecure file permissions.
- ️ Security Hardening Review: Analyzing server and database security settings.
What You Will Receive:
A comprehensive, easy-to-read Security Audit Report highlighting discovered vulnerabilities, risk levels, and actionable steps (or fixes) to secure your site.
Important Not
Respect third-party rights
Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.
Get to know Mahedi Hasan
Cybersecurity and web application penetration tester
- FromMalaysia
- Member sinceSep 2026
- Avg. response time1 hour
Languages
Bengali, English, Malay
Other Website Maintenance Services I Offer
FAQ
Is penetration testing safe for my live website?
Yes, I use non-destructive testing methodologies designed to find vulnerabilities without crashing or damaging your live site. However, taking a backup beforehand is always recommended.
What do you need from me to start?
I typically only need the URL of your website and, for deeper assessments, temporary Subscriber/Admin-level credentials or staging environment access.
Do you also fix the vulnerabilities found during the test?
The report includes actionable recommendations. Depending on the package, I also offer security hardening or direct fixes for discovered issues.
