Kali Penetration Test: Full Site
Budget: $30 – $250 USD
I want a seasoned Kali Linux professional to run a complete vulnerability assessment against my live website. Your sweep should cover every publicly exposed area while paying extra attention to anything tied to user authentication—login pages, password-reset flows, session management, the whole lot.
I expect you to lean on the usual Kali arsenal—nmap for discovery, Burp Suite or OWASP ZAP for proxy-based inspection, sqlmap if injections appear likely, Hydra or similar for authentication stress-tests—whatever combination you normally rely on to surface real-world weaknesses. Automated scans are welcome, but I’m counting on manual verification and proof-of-concept exploits so the final report is actionable rather than noisy.
Deliverables (all in one hand-off):
• Executive summary of overall security posture
• Detailed, reproducible findings for each vulnerability (steps, screenshots or request/response dumps, CVSS or comparable severity rating)
• Practical remediation advice prioritised by risk
Please include a brief rundown of your past experience performing full-stack pentests with Kali Linux or similar distributions. I’m happy to answer environment questions once we engage, but for now your track record will help me gauge fit.
I expect you to lean on the usual Kali arsenal—nmap for discovery, Burp Suite or OWASP ZAP for proxy-based inspection, sqlmap if injections appear likely, Hydra or similar for authentication stress-tests—whatever combination you normally rely on to surface real-world weaknesses. Automated scans are welcome, but I’m counting on manual verification and proof-of-concept exploits so the final report is actionable rather than noisy.
Deliverables (all in one hand-off):
• Executive summary of overall security posture
• Detailed, reproducible findings for each vulnerability (steps, screenshots or request/response dumps, CVSS or comparable severity rating)
• Practical remediation advice prioritised by risk
Please include a brief rundown of your past experience performing full-stack pentests with Kali Linux or similar distributions. I’m happy to answer environment questions once we engage, but for now your track record will help me gauge fit.