Betting Site Vulnerability Audit
Budget: ₹1,500 – ₹12,500 INR
I need a seasoned web-security professional to determine whether a live betting platform can be manipulated so that a wager’s details change either while it is still open or after it has settled. The scope covers both bet-integrity checks and a deep look at the underlying backend security.
Because I have no visibility into the site’s tech stack, assume it could be anything from a fully custom build to an off-the-shelf sportsbook engine. Your job is to probe whatever you encounter, staying strictly within authorised testing boundaries.
What I expect from you
• A clear test plan outlining how you will confirm or rule out bet tampering, session hijacking, database manipulation and similar attacks.
• Hands-on penetration testing using tools such as Burp Suite, OWASP ZAP, Wireshark or equivalents, followed by manual verification.
• A concise report that explains every vulnerability you find, proof-of-concept steps, and practical remediation advice.
Acceptance criteria
• The report must state whether bets can be altered before closure, after closure, or not at all.
• Each finding includes severity, reproduction steps and mitigation guidance.
• All testing remains within legal and ethical limits; no disruption to real users or wagering outcomes in production.
If you have solid experience with web application security, backend audits and betting or financial platforms, let’s talk.
Because I have no visibility into the site’s tech stack, assume it could be anything from a fully custom build to an off-the-shelf sportsbook engine. Your job is to probe whatever you encounter, staying strictly within authorised testing boundaries.
What I expect from you
• A clear test plan outlining how you will confirm or rule out bet tampering, session hijacking, database manipulation and similar attacks.
• Hands-on penetration testing using tools such as Burp Suite, OWASP ZAP, Wireshark or equivalents, followed by manual verification.
• A concise report that explains every vulnerability you find, proof-of-concept steps, and practical remediation advice.
Acceptance criteria
• The report must state whether bets can be altered before closure, after closure, or not at all.
• Each finding includes severity, reproduction steps and mitigation guidance.
• All testing remains within legal and ethical limits; no disruption to real users or wagering outcomes in production.
If you have solid experience with web application security, backend audits and betting or financial platforms, let’s talk.
Related categories:
PHP
Web Security
Website Testing
Internet Security
Penetration Testing
Network Security
Risk Assessment