I will web application and API penetration testing

S
sechamza
S
sechamza
Hamza

About this gig

I am a PNPT-certified penetration tester with over 3 years of hands-on offensive security experience, currently working full-time as a penetration tester for a security firm.

What I test:

  • Web applications OWASP Top 10, business logic flaws, authentication bypass
  • REST and GraphQL APIs IDOR, broken access control, rate limiting
  • Android and iOS mobile apps insecure storage, SSL pinning bypass
  • AI and LLM systems prompt injection, RAG poisoning, excessive agency

What you receive:

A professional PDF report documenting every finding with reproducible proof-of-concept steps, CVSS severity scoring, OWASP category mapping, business impact analysis, and clear remediation guidance your developers can act on immediately. An executive summary is included for non-technical stakeholders.

Every finding is manually verified. No automated scanner output, no false positives wasting your team's time.

Before ordering: Please message me with your target so I can confirm scope and timeline. I only test assets you own or have written authorization to test.

Respect third-party rights

Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.

Get to know Hamza

Hamza

Penetration Tester

  • FromPakistan
  • Member sinceAug 2026
  • Avg. response time1 hour
  • Languages

    Pashto, English, Urdu, Punjabi
I am a PNPT certified cybersecurity professional with over 3 years of experience in web application security, API and mobile penetration testing, and network security assessments. I specialize in Active Directory exploitation and AI/LLM security testing, delivering actionable recommendations to fortify organizational defenses.

Related tags