Security Cleanup & Vulnerability Fix for OpenCart 3.0.3.8 (Urgent)

Job ID: 39786448

Budget: ₹1,500 – ₹12,500 INR

Our website was recently hacked and we think they are still in there. I need to hire someone to clean up our website/server to make sure we are secure again.

1. From the forum posts I have read, we might have several vulnerabilities with some modules, and could have issues with more.
- https://www.opencart.com/index.php?route=marketplace/extension/info&extension_id=19235 - https://www.opencart.com/index.php?route=marketplace/extension/info&extension_id=26325

2. A Paypal payment module was turned on in OC/Admin with an account/email that was not ours, and our Authorize.net account was turned off. I turned off Paypal and turned back on Authorize.net

3. We have had 1 report of a compromised credit card after using it on our website, could they be skimming our Authorize.net module?

4. We are also getting MySQL errors at times with the website, both front end and admin area. "Fatal error: Uncaught Exception: Error: Could not make a database link using...." If I refresh the page, it usually comes back. Bot Attack?

5. There are probably more issues we are experiencing, but I just have not discovered them.

Requirements:
Proven expertise with OpenCart (3.x) security.
Strong experience with web server security, PHP & MySQL hardening.
Ability to respond and act quickly (live site is at risk).

Deliverables:

Fully cleaned and secured OpenCart store.
Verified and tested payment module setup (Authorize.net).
Report on vulnerabilities found & fixes applied.
Recommendations for long-term security monitoring.

Project Details:

OpenCart Version: 3.0.3.8
Theme: Default
PHP Version: 7.4
MySQL Version: 8.0.39
Environment: Live site

Timeline & Budget:
Please provide a time frame and fixed cost to complete this job.

Priority will be given to experts who can start immediately.