Network Security Vulnerability Assessment
Budget: $250 – $750 USD
I'm looking for an experienced ethical hacker to help identify and fix security vulnerabilities. A. Account takeover & identity misuse
• Unauthorized creation/access of accounts (business accounts, bank/credit) using your identity.
• Social-engineering attacks on institutions (banks, carriers, DMV) to add/modify accounts.
B. SIM swap / SIM cloning / port-out attacks
• Phone numbers moved or replicated so attackers control calls/SMS 2FA.
• Result: lost SMS codes, account recovery hijacks.
C. Device compromise (mobile & PC)
• Persistent remote access on smartphones/computers (malware, spyware, or MDM enrollment).
• Symptoms: unexpected device profiles, admin MDM/EMM settings, apps installed you didn’t authorize, remote typing/camera activation.
D. MDM/EMM abuse
• Your device(s) enrolled in enterprise MDM (allowing remote profiles, policies, admin rights) — often visible as “Device Management” on iPhone/Android.
• Could be done by someone with insider access or via falsified organization credentials.
E. Network/router compromise
• Router/admin password changed, unknown devices on the network, malicious DNS, persistent backdoor into home/office network.
• Consequence: local MITM, device provisioning, credential harvesting.
F. Vehicle telematics/account takeover
• Unauthorized pairing or multiple profiles in Mercedes/Tesla me; remote unlocking/commands; odd behavior of cameras and navigation.
• Could be via stolen account credentials, weak account recovery, or dealership/insider provisioning.
G. Phishing / credential harvesting / business email compromise
• Fake emails or credential prompts that allowed credentials to be stolen (email, Mercedes/Tesla accounts, dealerships).
H. Insider provisioning / physical access
• Someone with physical access staging account changes (e.g., at dealerships, carrier stores) or directly installing devices / switching vehicles.
• Unauthorized creation/access of accounts (business accounts, bank/credit) using your identity.
• Social-engineering attacks on institutions (banks, carriers, DMV) to add/modify accounts.
B. SIM swap / SIM cloning / port-out attacks
• Phone numbers moved or replicated so attackers control calls/SMS 2FA.
• Result: lost SMS codes, account recovery hijacks.
C. Device compromise (mobile & PC)
• Persistent remote access on smartphones/computers (malware, spyware, or MDM enrollment).
• Symptoms: unexpected device profiles, admin MDM/EMM settings, apps installed you didn’t authorize, remote typing/camera activation.
D. MDM/EMM abuse
• Your device(s) enrolled in enterprise MDM (allowing remote profiles, policies, admin rights) — often visible as “Device Management” on iPhone/Android.
• Could be done by someone with insider access or via falsified organization credentials.
E. Network/router compromise
• Router/admin password changed, unknown devices on the network, malicious DNS, persistent backdoor into home/office network.
• Consequence: local MITM, device provisioning, credential harvesting.
F. Vehicle telematics/account takeover
• Unauthorized pairing or multiple profiles in Mercedes/Tesla me; remote unlocking/commands; odd behavior of cameras and navigation.
• Could be via stolen account credentials, weak account recovery, or dealership/insider provisioning.
G. Phishing / credential harvesting / business email compromise
• Fake emails or credential prompts that allowed credentials to be stolen (email, Mercedes/Tesla accounts, dealerships).
H. Insider provisioning / physical access
• Someone with physical access staging account changes (e.g., at dealerships, carrier stores) or directly installing devices / switching vehicles.