I will do API penetration testing and owasp API top 10 security audit

W
wasim_roxx
W
wasim_roxx
WASEEM KHAN

About this gig

Are your APIs exposing critical vulnerabilities? As a C|PENT certified penetration tester, I provide professional API security testing and OWASP vulnerability assessments to protect your web applications from real-world attacks.


What I Test:

- OWASP API Security Top 10 vulnerabilities

- Authentication and authorization flaws (Broken Object Level Authorization)

- Injection attacks (SQLi, NoSQLi, Command Injection)

- Excessive data exposure and improper asset management

- Rate limiting and business logic vulnerabilities

- BOLA, BFLA, and Mass Assignment issues

- JWT token weaknesses and insecure session handling


What You Get:

- Detailed vulnerability report with risk ratings (Critical/High/Medium/Low)

- Step-by-step reproduction steps for each finding

- Remediation recommendations and best practices

- Executive summary for non-technical stakeholders


Tools Used: Burp Suite Pro, OWASP ZAP, Postman, custom scripts.


I hold C|PENT (Certified Penetration Testing Professional) certification with 95.2% score and have tested APIs across fintech, healthcare, and e-commerce sectors.


Contact me to discuss your specific API security needs before ordering.

Respect third-party rights

Please be aware that it is against Fiverr's policies for sellers to include themes, templates, or any other elements that infringe third-party rights or applicable laws in the delivered work. Read more about in our Guide to Responsible Digital Creation.

Get to know WASEEM KHAN

WASEEM KHAN

OSCP, CEH Master, CPENT, Penetration Tester and Security Consultant

4.9(10)
  • FromPakistan
  • Member sinceJan 2017
  • Avg. response time1 hour
  • Last delivery6 years
  • Languages

    English, Urdu, Pashto
Senior Cybersecurity Professional with 6+ years of experience in Penetration Testing, VAPT, API Security, Red Team Operations, and Enterprise Security Assessments. Skilled in web, network, and API security testing using OWASP, PTES, and industry best practices. Expertise includes vulnerability assessment, authentication testing, risk analysis, and remediation guidance. Certified OSCP, CEH Master, CPENT, CHFI, CTIA, Security+, CySA+, PenTest+, and CISM professional.

My Portfolio