I will perform web application vulnerability assessment
Im Rafi uzzaman khan a passionate Security Researcher
About this Gig
Before attackers exploit your web application's hidden weaknesses, I will conduct a thorough, authorized security assessment to uncover common vulnerabilities, misconfigurations, and potential attack paths that could compromise your data and operations. My methodology is grounded in the OWASP Top 10, blending manual penetration testing with industry-standard automated tools for comprehensive coverage. I focus on authentication, login security, authorization and access control, session management, SQL Injection, CrossSite Scripting (XSS), CrossSite Request Forgery (CSRF), Insecure Direct Object References (IDOR) and Broken Object Level Authorization (BOLA), security misconfigurations, input validation, file upload security, API endpoints, sensitive data exposure, and businesslogic flaws that automated scanners often miss. Following the assessment, you will receive a detailed, actionable report.
Testing platform:
Website testing
Device:
PC
•
Linux
FAQ
Client Requirements
1.Target URL/domain 2.Written authorization to test 3.Testing scope 4.Test account credentials, if authentication testing is required 5.API documentation, if API testing is included 6.Any endpoints/features that are explicitly out of scope 7.Preferred testing window if production testing is involved
