Web App Penetration Test Needed
Budget: €3,000 – €5,000 EUR
As the creator of an expressive web application that utilizes advanced node technology, I am looking for a cybersecurity expert to conduct a comprehensive penetration test.
Specific issues my application currently faces include:
- Cross-site scripting (XSS)
- SQL injection
- Cross-site request forgery (CSRF)
Given the complexity of these issues, an ideal freelancer would have thorough experience in the detection and mitigation of such vulnerabilities.
My framework of choice is Express with Node.js; so understanding of this environment is crucial.
Additionally, the chosen tester should be well-versed in white box testing methodologies.
Looking forward to ensuring my application's security is top-notch. Apply if you're up to the task!
Challenge Accepted:
As a demonstration of your capabilities, you've to successfully hosted and analyzed the provided test repository on Docker. The challenge involves retrieving a fake CTF flag from an easy lab based on basic SQLite.
? Test Repository:
GitHub Repository
? Demonstration:
To showcase your skills, you've to developed a working exploit along with step-by-step instructions for reproduction. This not only proves my technical prowess but also highlights my commitment to delivering tangible results.
Specific issues my application currently faces include:
- Cross-site scripting (XSS)
- SQL injection
- Cross-site request forgery (CSRF)
Given the complexity of these issues, an ideal freelancer would have thorough experience in the detection and mitigation of such vulnerabilities.
My framework of choice is Express with Node.js; so understanding of this environment is crucial.
Additionally, the chosen tester should be well-versed in white box testing methodologies.
Looking forward to ensuring my application's security is top-notch. Apply if you're up to the task!
Challenge Accepted:
As a demonstration of your capabilities, you've to successfully hosted and analyzed the provided test repository on Docker. The challenge involves retrieving a fake CTF flag from an easy lab based on basic SQLite.
? Test Repository:
GitHub Repository
? Demonstration:
To showcase your skills, you've to developed a working exploit along with step-by-step instructions for reproduction. This not only proves my technical prowess but also highlights my commitment to delivering tangible results.