Find Jobs
Hire Freelancers

Database security

$250-750 USD

In Progress
Posted about 14 years ago

$250-750 USD

Paid on delivery
I am looking for a good freelance coder/programmer/scriptwriter to test the security of a website. The website contains very important information and I want a programmer to test the security by trying to get into the database. If the security fails then I would like him to rebuild and improve the security. There are many more jobs available after this one. Please send me an e-mail if you are good in securing databases and websites.
Project ID: 628177

About the project

9 proposals
Remote project
Active 14 yrs ago

Looking to make some money?

Benefits of bidding on Freelancer

Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
Awarded to:
User Avatar
we can start now
$300 USD in 1 day
5.0 (1 review)
4.6
4.6
9 freelancers are bidding on average $367 USD for this job
User Avatar
Expert on website security and sql injection protection. Thanks, Tonmay
$750 USD in 21 days
4.8 (154 reviews)
7.6
7.6
User Avatar
Hello ranji29kum, Please check your PMs. Thanks! Best Regards, Stan.
$250 USD in 5 days
5.0 (63 reviews)
5.9
5.9
User Avatar
Sir, I think I stand a chance here! Please view PM for details!
$250 USD in 5 days
4.5 (21 reviews)
5.7
5.7
User Avatar
I can do this for you.
$750 USD in 30 days
4.9 (34 reviews)
4.6
4.6
User Avatar
The assesment will scann fro the following * Version Check o Vulnerable Web Servers o Vulnerable Web Server Technologies – such as “PHP 4.3.0 file disclosure and possible code execution. * CGI Tester o Checks for Web Servers Problems – Determines if dangerous HTTP methods are enabled on the web server (e.g. PUT, TRACE, DELETE) o Verify Web Server Technologies * Parameter Manipulation o Cross-Site Scripting (XSS) – over 40 different XSS variations are tested. o SQL Injection o Code Execution(Unix and Windows) o Directory Traversal (Unix and Windows) o File Inclusion o Script Source Code Disclosure o CRLF Injection o Cross Frame Scripting (XFS) o PHP Code Injection o XPath Injection o Full Path Disclosure o LDAP Injection o Cookie Manipulation o Arbitrary File creation (AcuSensor Technology) o Arbitrary File deletion (AcuSensor Technology) o Email Injection (AcuSensor Technology) o File Tampering (AcuSensor Technology) o URL redirection o Remote XSL inclusion * MultiRequest Parameter Manipulation o Blind SQL/XPath Injection * File Checks o Checks for Backup Files or Directories - Looks for common files (such as logs, application traces, CVS web repositories) o Cross Site Scripting in URI o Checks for Script Errors * File Uploads o Unrestricted File uploads Checks * Directory Checks o Looks for Common Files (such as logs, traces, CVS) o Discover Sensitive Files/Directories o Discovers Directories with Weak Permissions o Cross Site Scripting in Path and PHPSESSID Session Fixation. o Web Applications o HTTP Verb Tampering * Text Search o Directory Listings o Source Code Disclosure o Check for Common Files o Check for Email Addresses o Microsoft Office Possible Sensitive Information o Local Path Disclosure o Error Messages o Trojan shell scripts (such as popular PHP shell scripts like r57shell, c99shell etc) * Weak Passwords o Weak HTTP Passwords * GHDB Google Hacking Database o Over 1200 GHDB Search Entries in the Database * Port Scanner and Network Alerts o Port scans the web server and obtains a list of open ports with banners o Performs complex network level vulnerability checks on open ports such as: + DNS Server vulnerabilities (Open zone transfer, Open recursion, cache poisoning) + FTP server checks (list of writable FTP directories, weak FTP passwords, anonymous access allowed) + Security and configuration checks for badly configured proxy servers + Checks for weak SNMP community strings and weak SSL cyphers + and many other network level vulnerability checks! * Other vulnerability tests may also be preformed using the manual tools provided, including: o Input Validation o Authentication attacks o Buffer overflows o Blind SQL injection o Sub domain scanning
$250 USD in 1 day
3.8 (3 reviews)
2.5
2.5
User Avatar
Will be done.
$250 USD in 1 day
4.5 (1 review)
1.2
1.2
User Avatar
I have experience providing security assessments to schools as well as multiple Fortune 500 companies. I worked for Ernst & Young, one of the premiere companies in the professional services industry.
$250 USD in 2 days
0.0 (0 reviews)
0.0
0.0
User Avatar
Hi, I am ready. Let me know the details to start the work right now. thanks.
$250 USD in 10 days
0.0 (0 reviews)
0.0
0.0

About the client

Flag of INDIA
Roorkee, India
0.0
0
Member since Mar 6, 2010

Client Verification

Thanks! We’ve emailed you a link to claim your free credit.
Something went wrong while sending your email. Please try again.
Registered Users Total Jobs Posted
Freelancer ® is a registered Trademark of Freelancer Technology Pty Limited (ACN 142 189 759)
Copyright © 2024 Freelancer Technology Pty Limited (ACN 142 189 759)
Loading preview
Permission granted for Geolocation.
Your login session has expired and you have been logged out. Please log in again.