Penetration Test (Pentest) for E-commerce Website – Experienced Security Professional Required
Budget: $250 – $750 USD
I am looking for an experienced ethical hacker / penetration testing professional to perform a full penetration test on my e-commerce website. The goal of this project is to identify security vulnerabilities, assess potential attack vectors, and receive clear technical recommendations to improve the overall security posture of the platform. This is a legitimate, authorized security assessment. Written permission will be provided if required.
Scope:
Reconnaissance and information gathering
Web application vulnerability testing (OWASP Top 10)
SQL Injection, XSS, authentication and session issues
Brute force and rate-limiting tests (non-destructive)
Input validation and form sanitization
Controlled exploitation (no service disruption)
Social engineering, phishing, and physical access are out of scope unless agreed in advance.
Deliverables:
Clear pentest report
List of vulnerabilities with risk levels
Proof of concept (when applicable)
Practical remediation recommendations
Requirements:
Proven experience with web application pentesting
Experience with e-commerce platforms
Familiarity with tools like Burp Suite, OWASP ZAP, Nmap, Metasploit
Strong knowledge of OWASP Top 10
Scope:
Reconnaissance and information gathering
Web application vulnerability testing (OWASP Top 10)
SQL Injection, XSS, authentication and session issues
Brute force and rate-limiting tests (non-destructive)
Input validation and form sanitization
Controlled exploitation (no service disruption)
Social engineering, phishing, and physical access are out of scope unless agreed in advance.
Deliverables:
Clear pentest report
List of vulnerabilities with risk levels
Proof of concept (when applicable)
Practical remediation recommendations
Requirements:
Proven experience with web application pentesting
Experience with e-commerce platforms
Familiarity with tools like Burp Suite, OWASP ZAP, Nmap, Metasploit
Strong knowledge of OWASP Top 10