I'll pentest your website, API, or network - full report with vulnerabilities and fix recommendations.
Most hacks don't happen through some exotic zero-day - they happen through basic mistakes: an SQL injection in a search form, an open port on the server, a weak JWT token. I find them before someone else does.
I work by OWASP Top 10 and PTES methodology. Everything is legal - only with written authorization from the system owner.
What I check:
Web applications (OWASP Top 10: SQLi, XSS, IDOR, SSRF, RCE, etc.)
APIs (auth, authorization, rate limiting, data leaks)
Network infrastructure (open ports, misconfigured services)
Authentication & session management
Business logic (payment bypass, privilege escalation)
What you get:
Detailed report with every vulnerability explained
Severity rating (Critical / High / Medium / Low)
Specific steps to fix each issue
Re-test after fixes are applied (included)
Fair warning: I don't hack anything without permission. If you're looking to test someone else's site - I'm not your guy.
Market rates (July 2026): $25–50/hr on Contra for junior-mid level, $800/day for senior (data from Malt / Freelancer). My pricing sits in the mid-senior range with a fixed project cost.