
Open
Posted
•
Ends in 12 hours
Paid on delivery
I need a seasoned ethical hacker to uncover and clearly document every security weakness lurking in our mobile applications and the underlying network infrastructure. You will have formal authorisation to test, but there are a few boundaries: production customer data is off-limits and any denial-of-service style traffic must be kept to agreed-upon off-peak windows. Everything else inside the defined scope is fair game. During the engagement you are free to use the tools you prefer—Burp Suite, OWASP ZAP, Metasploit, Wireshark, custom scripts—so long as the final results are reproducible. Deliverables • A concise executive summary followed by a detailed technical report for both the mobile apps and network layers. • Proof-of-concept evidence (screenshots, request/response logs, exploit code where relevant). • Risk ratings that map to CVSS or a similar industry scale, plus clear remediation steps. • A short hand-over call to walk my dev and ops teams through the findings. If you thrive on rooting out hidden flaws while respecting strict legal and operational boundaries, let’s get started.
Project ID: 40454733
22 proposals
Open for bidding
Remote project
Active 8 hours ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
22 freelancers are bidding on average ₹10,602 INR for this job

With over 7 years of experience in legally breaking into systems, you can trust my keen eye for detail to uncover any vulnerabilities lurking in your mobile applications and network infrastructure. My approach to vulnerability assessment is not just about ticking boxes but thinking like an attacker and anticipating every possible angle of breach. Plus, you have the added assurance that I've found critical zero-days which could potentially cost you more in the long run. My reportage style is concise, clear and actionable. You won't get a lengthy PDF that no one bothers to read. Rather, you'll receive a detailed technical report with screenshots, logs and even exploit codes where relevant. Each risk will be mapped to industry scale such as CVSS with its corresponding recommended remediation steps. Moreover, I'd make sure to walk your development and operations teams through every finding in a short hand-over call. Lastly, my security certifications - CEH, OSCP, CISSP, PNPT & eWPT - testify to both my skills and professionalism in this field. Instead of just using the same old tools, I'm also open to trying out new tools under your guidance provided the end result remains reliable and reproducible. My aim is simple - Hunt down every loophole while respecting the legal and operational boundaries! Trust me with your project as I promise real findings without any fluff or recycled reports.
₹60,000 INR in 14 days
5.5
5.5

Hi, I can perform a comprehensive Vulnerability Assessment & Ethical Hacking engagement for your mobile applications and network infrastructure while following all authorized testing boundaries and operational safety requirements. With 16+ years of experience in cybersecurity, penetration testing, cloud security, and infrastructure hardening, I have worked on enterprise-grade security assessments for web, mobile, APIs, and network environments. How I Can Help • Mobile app security testing for authentication flaws, insecure storage, API vulnerabilities, and session weaknesses • Network vulnerability assessment and controlled penetration testing • Manual validation of findings to eliminate false positives • Testing using Burp Suite, OWASP ZAP, Metasploit, Wireshark, Nmap, and custom scripts • Secure and non-disruptive testing within approved maintenance windows • Actionable remediation guidance and security recommendations Deliverables • Executive summary with overall security posture • Detailed vulnerability report with CVSS-based risk ratings • Proof-of-concept evidence and logs • Remediation recommendations • Handover session with your dev and ops teams We can discuss budget and timelines later. Best regards, SaD
₹23,963 INR in 7 days
5.3
5.3

Hello, I’m Ammar Khan, a Certified Ethical Hacker (CEH) with strong experience in mobile application penetration testing, network security assessments, API testing, and infrastructure auditing. I can perform a structured security assessment of both your mobile applications and underlying network infrastructure while fully respecting your operational boundaries, including protection of production customer data and restricted testing windows for high-traffic activities. My testing approach includes: • Mobile app security testing (Android/iOS) • API and backend assessment • Authentication/session testing • Network reconnaissance and vulnerability analysis • Misconfiguration and privilege escalation checks • Traffic interception and secure communication validation • OWASP Mobile Top 10 and network-layer testing Tools I commonly use: • Burp Suite • OWASP ZAP • Wireshark • Metasploit • Nmap • Custom Python/Linux scripts Deliverables: • Executive summary for management • Detailed technical report with reproducible findings • CVSS-based risk ratings • Proof-of-concept screenshots/logs • Clear remediation guidance for developers and ops teams • Walkthrough hand-over session after completion My focus is on actionable findings, realistic attack scenarios, and professional reporting that helps teams quickly remediate vulnerabilities before production risks emerge. I’m available to start immediately and can work within your approved testing scope and timelines.
₹12,500 INR in 7 days
4.2
4.2

Hi, I can help perform a structured security assessment of your mobile applications and underlying network infrastructure while strictly respecting the defined legal and operational boundaries. I have experience with: • API & backend security testing • Mobile/web application assessment • Authentication & session testing • Network traffic analysis • OWASP Top-10 vulnerability analysis • Automation and custom security scripts I’m comfortable working with tools such as: • Burp Suite • OWASP ZAP • Wireshark • Metasploit • Postman • Custom Python-based testing utilities The assessment can include: • Authentication & authorization flaws • API security weaknesses • Insecure storage/configuration issues • Network exposure analysis • SSL/TLS validation • Input validation vulnerabilities • Session/token handling checks • Misconfiguration & privilege escalation testing Deliverables: • Executive summary + detailed technical report • CVSS-based risk ratings • Reproducible PoC evidence • Screenshots/request-response logs • Remediation recommendations • Knowledge-transfer handover session with dev/ops teams I understand the importance of controlled testing in production-adjacent environments and can work within approved testing windows and scope limitations. Looking forward to discussing the target environment and assessment scope further.
₹7,000 INR in 7 days
3.8
3.8

Hi, I’m an experienced ethical hacker and cybersecurity professional with hands-on expertise in mobile application security testing, network vulnerability assessments, and secure reporting practices. I have worked with tools such as Burp Suite, OWASP ZAP, Metasploit, Wireshark, Nmap, and custom testing scripts to identify critical vulnerabilities while fully respecting legal and operational boundaries. I can perform a thorough assessment of your mobile apps and network infrastructure, provide reproducible proof-of-concept evidence, CVSS-based risk ratings, and detailed remediation guidance in a professional report. I also ensure clear communication throughout the engagement and can conduct a hand-over session with your development and operations teams to explain findings and mitigation strategies effectively.
₹10,000 INR in 4 days
2.6
2.6

Hello there, hope you are having a fantastic day so far! Mobile plus network infrastructure VAPT with reproducible findings and CVSS-mapped risk ratings is exactly how I structure these engagements. Burp Suite, OWASP ZAP, Metasploit and Wireshark are part of my regular toolchain. Honest scoping note: my deepest hours are on network and web application surfaces. On mobile I am solid on Android (apk decompilation, MobSF, Frida instrumentation, cert pinning bypass, insecure storage and IPC checks, Burp interception). iOS work I take on selectively since runtime tampering on non-jailbroken devices needs careful scoping. Worth confirming Android vs iOS coverage before we lock a rate. How I would run it: kickoff to lock scope and the off-peak window for any noisy traffic, then a methodical pass: passive recon, authenticated and unauthenticated testing across the app surface, mobile binary analysis, network layer (segmentation, exposed services, internal routing, credential reuse). Every finding manually validated before it enters the report. Deliverables as specified: executive summary, detailed technical report per surface, PoC evidence (screenshots, request/response logs, exploit code where relevant), CVSS-mapped severity, remediation steps, plus a closeout call with your dev and ops teams. Background: 20 years in IT and security, 8 on the security side, 25+ pentest engagements including Fortune 500 work. Vicente Muñoz
₹8,000 INR in 14 days
1.0
1.0

Hi, I have 5+ years of experience in penetration testing including Web Application penetration testing; System Application penetration testing; Mobile application penetration testing; Network application penetration testing; social engineering penetration testing etc. Follow systematic approach and best industry methodology like OWASP Testing Guide v4(OTGv4) ; SANS top 25; NIST SP 800-115; PCI DSS etc to perform penetration testing : Web Application Testing : Perform both manual and automated penetration testing for vulnerabilities like SQL injection, Cross-site scripting(XSS), Cross-site request Forgery(CSRF), Code injections, Authentication Bypass, Access Violation, Remote File inclusion(RFI),Local File Inclusion(LFI) etc. Network Testing: Provide Network Penetration Testing so that your Network Infrastructure is secured from the real attacks. Perform both manual and automated network penetration testing to identify network security threats in your network. I can assure you that I will be an ideal candidate for what you are looking for. Please out to me for further discussions. Thank you
₹7,000 INR in 7 days
0.0
0.0

I am the best candidate for this project because I bring a combination of real-world infrastructure security experience, enterprise troubleshooting expertise, and strong technical reporting capabilities that are critical for mobile and network security assessments. With over 6 years of experience as an ICT/Infrastructure Engineer, I have worked in environments where security, uptime, compliance, and risk mitigation are business-critical. My background includes: * Network infrastructure and firewall administration * Endpoint and mobile device management * Identity and access management * Security incident troubleshooting * Log analysis and system hardening * Enterprise healthcare IT environments where confidentiality and reliability are essential For this engagement, I can provide: * A professional executive summary tailored for management stakeholders * A detailed technical report for both the mobile application and network layers * Clear proof-of-concept evidence including screenshots, request/response analysis, and technical validation steps * Risk prioritization aligned with CVSS standards and industry best practices * Actionable remediation guidance for developers, infrastructure teams, and operations staff * A structured hand-over session to ensure your teams fully understand the findings, risks, and recommended fixes I also place strong emphasis on: * Clear communication * Professional documentation * Responsible disclosure practices
₹10,000 INR in 7 days
0.0
0.0

As a bilingual cybersecurity professional with over 4 years of experience across SOC, IAM, and Compliance, I am an excellent fit for this engagement. I have a strong background in identifying and documenting security weaknesses, particularly through hands-on vulnerability assessments using industry-standard tools like Nessus and Qualys. My experience allows me to effectively map technical vulnerabilities to risk and compliance standards, ensuring clear documentation for your dev and ops teams. I am fully prepared to operate strictly within your defined legal and operational boundaries, ensuring thorough mobile and network testing without disrupting production or customer data
₹7,000 INR in 7 days
0.0
0.0

Hello, I’m an ethical hacker and penetration tester with 5+ years of experience working with clients in banking, healthcare, automobile, stock trading firms, and commercial enterprises. I specialize in mobile application and network security assessments with a strong focus on responsible and authorized testing. I can thoroughly test your mobile apps and network infrastructure while fully respecting your engagement boundaries, including restrictions on production customer data and controlled DoS testing windows. My experience includes identifying vulnerabilities such as insecure APIs, broken authentication, weak encryption, privilege escalation, exposed services, and network misconfigurations. I work with tools including Burp Suite, OWASP ZAP, Metasploit, Wireshark, Nmap, and custom scripts to deliver accurate and reproducible findings. You will receive a professional executive summary, detailed technical report, proof-of-concept evidence, CVSS-based risk ratings, and practical remediation guidance for both mobile and network layers. I’m also available for a hand-over session to walk your dev and ops teams through the findings and mitigation steps. I’m confident I can deliver a thorough and high-quality security assessment for your environment.
₹6,000 INR in 15 days
0.0
0.0

Hi, I am a Certified Ethical Hacker (CEH) with 2.5+ years of hands-on experience in mobile application, web application, and network penetration testing. I have performed 400+ security assessments across enterprise and government environments, focusing on identifying critical vulnerabilities and improving overall security posture. For this engagement, I will conduct a comprehensive security assessment of your mobile applications and underlying network infrastructure using a combination of manual testing methodologies and industry-standard tools such as Burp Suite, OWASP ZAP, Metasploit, Wireshark, and custom validation techniques. The assessment will be performed within the agreed operational boundaries while ensuring testing activities remain controlled, safe, and fully authorized. The deliverables will include a detailed executive summary, technical findings with CVSS-based risk ratings, proof-of-concept evidence, reproduction steps, and actionable remediation recommendations. I can also provide a handover session to walk your development and operations teams through the identified findings and security improvements. I am available to begin immediately and can ensure professional communication, confidentiality, and high-quality deliverables throughout the engagement. Best regards, Rahul Kumar Soni
₹5,500 INR in 7 days
0.0
0.0

Hi, I'm a penetration tester and independent security researcher with published CVEs assigned by MITRE — real vulnerabilities I discovered and reported responsibly in production open source projects. For this engagement I'll cover your mobile apps and network infrastructure using Burp Suite, OWASP ZAP, Metasploit, Wireshark and custom scripts, delivering everything you listed: executive summary, technical report, PoC evidence, CVSS-mapped findings, remediation steps, and the handover call. I fully respect your boundaries — no production data, DoS only in agreed windows. Ready to start immediately.
₹6,500 INR in 7 days
0.0
0.0

“My strength lies in combining offensive security testing with structured risk analysis and remediation support. I can identify exploitable weaknesses across application and network layers, correlate findings with industry standards such as CVSS and OWASP, and provide technically accurate, reproducible reports that support both security and operational teams.”
₹10,000 INR in 7 days
0.0
0.0

I've read the project details and I know I can deliver. From a different perspective as well as analysing popularly exploited risks while following your deliverables, I'm sure you'll get the desirable result you are looking for.
₹8,000 INR in 4 days
0.0
0.0

I specialize in deep-dive mobile application and network infrastructure penetration testing. As a PNPT-certified ethical hacker credited with discovering a zero-day vulnerability in Telegram (CVE-2024-54916), I bring real-world, manual exploitation experience to your stack. I strictly respect operational boundaries, ensuring zero impact on production data while rigorously analyzing your mobile clients and underlying network. You will receive a comprehensive, CVSS-scored report with reproducible PoCs and developer-ready remediation guidance. I am fully available for the post-assessment handover call with your Dev/Ops teams. Let’s discuss your specific scope boundaries.
₹7,780 INR in 6 days
0.0
0.0

I specialize in web application security testing and network reconnaissance, with hands-on experience identifying vulnerabilities through manual testing, endpoint analysis, misconfiguration discovery, and network scanning using tools such as Nmap, Burp Suite, OWASP ZAP, and custom methodologies. I focus on delivering detailed, reproducible findings with proper proof-of-concept evidence and professional technical reporting. I can perform a detailed First Vulnerability Review (FVR) within 2 days at a very low cost while maintaining clear communication, structured reporting, and responsible testing within your defined operational boundaries.
₹1,500 INR in 2 days
0.0
0.0

I have understood the engagement scope, testing boundaries, and operational restrictions clearly. I am comfortable working within authorised environments while ensuring production customer data remains untouched and high-impact testing is limited to approved maintenance windows. I can perform structured mobile application and network security assessments using industry-standard tools and provide reproducible findings with detailed reporting, proof-of-concepts, CVSS-based risk ratings, remediation guidance, and a technical hand-over discussion with your teams.
₹7,000 INR in 10 days
0.0
0.0

Hello, I’m a cybersecurity professional specializing in penetration testing for mobile applications and network infrastructure. I will conduct a thorough security assessment following industry standards such as OWASP MSTG and PTES to identify vulnerabilities across your defined scope. The engagement will include: Mobile application security testing (static and dynamic analysis) Network and API vulnerability assessment Controlled exploitation with reproducible proof-of-concepts CVSS-based risk ratings with clear business impact Detailed remediation guidance for all findings Deliverables: Executive summary for stakeholders Full technical report (mobile + network) Evidence of findings (logs, screenshots, PoCs where applicable) Final walkthrough session for your team All testing will strictly respect your rules of engagement, including no access to production customer data and controlled testing windows for any intensive activity. I ensure clear documentation, actionable results, and secure, verifiable testing practices. Looking forward to working with you.
₹1,500 INR in 3 days
0.0
0.0

Hi, I've reviewed your project requirements carefully. You need a thorough security assessment of mobile applications and network infrastructure, with professional documentation and a handover call — I can deliver exactly that. My recent work includes a passive security assessment of a national government cybersecurity platform where I identified 16 vulnerabilities across 4 assets including broken access control, missing security headers, AI over-privilege, and session cookie misconfigurations — all documented with CVSS ratings, CWE classifications, and step-by-step remediation guidance in a 28-page technical report. For your project I will deliver: - Executive summary + detailed technical report covering mobile app and network layers - Proof-of-concept evidence — screenshots, request/response logs where applicable - CVSS-mapped risk ratings with clear remediation steps for your dev and ops teams - Handover call to walk your team through findings Tools I use: Burp Suite, OWASP ZAP, Wireshark, Metasploit, Nmap, Kali Linux — all findings reproducible and documented. I work strictly within defined scope, never touch production customer data, and respect all operational boundaries. All engagements are conducted under formal authorisation only. I'm ready to start immediately. Happy to discuss scope details before we begin. Satheesh Nithiananthan SAIZERO — Ground Zero Defence
₹7,000 INR in 5 days
0.0
0.0

Indrapuram, India
Member since Oct 25, 2022
₹1500-12500 INR
€8-30 EUR
$30-250 USD
$10-100 USD
₹1500-12500 INR
$30-250 USD
€250-750 EUR
€8-30 EUR
$25-50 USD / hour
$30-250 USD
£5000-10000 GBP
$30-250 USD
₹1500-12500 INR
$10-50 USD
€8-30 EUR
$750-1500 USD
₹12500-37500 INR
$250-750 AUD
₹1250-2500 INR / hour
₹750-1250 INR / hour