Website Phishing Cleanup & Hardening
Budget: ₹1,500 – ₹12,500 INR
Yesterday our website was hit by a phishing attack that redirected some visitors to a fake login page and injected suspicious code into a few core files. I have already taken the site offline and backed up the current state; now I need an experienced security specialist to clean the infection, trace how the breach occurred, and put solid defenses in place so this does not happen again.
The job starts with a full scan of the public-facing folders and the database to locate every malicious snippet or backdoor. Once the code is removed, I want a concise report that shows what was found, which vulnerabilities were exploited, and clear recommendations for closing them. Finally, please implement the agreed fixes—whether that means tightening headers, updating plugins, configuring a WAF, or hardening server permissions—before the site goes live again.
I will be choosing someone whose past work demonstrates successful recovery from similar phishing incidents on websites. Please link directly to clean-up or security-hardening projects you have completed, noting any tools you prefer (e.g., OWASP ZAP, Burp Suite, ClamAV) and the turnaround times you achieved.
Deliverables:
• Clean, operational site with no malicious code
• Post-remediation security report (PDF or Markdown)
• List of preventive measures applied and any next steps I should schedule
Once we’re back online safely, I’m open to arranging an ongoing maintenance agreement if your work proves reliable.
The job starts with a full scan of the public-facing folders and the database to locate every malicious snippet or backdoor. Once the code is removed, I want a concise report that shows what was found, which vulnerabilities were exploited, and clear recommendations for closing them. Finally, please implement the agreed fixes—whether that means tightening headers, updating plugins, configuring a WAF, or hardening server permissions—before the site goes live again.
I will be choosing someone whose past work demonstrates successful recovery from similar phishing incidents on websites. Please link directly to clean-up or security-hardening projects you have completed, noting any tools you prefer (e.g., OWASP ZAP, Burp Suite, ClamAV) and the turnaround times you achieved.
Deliverables:
• Clean, operational site with no malicious code
• Post-remediation security report (PDF or Markdown)
• List of preventive measures applied and any next steps I should schedule
Once we’re back online safely, I’m open to arranging an ongoing maintenance agreement if your work proves reliable.