
Closed
Posted
Paid on delivery
Our regional payment subdomain is being flagged by Google Safe Browsing and other security filters as a "potential phishing threat," preventing members from processing payments. We need a technically competent freelancer to diagnose the root cause, implement a secure subdomain solution under our primary corporate domain, and restore trust. Background Primary domain: [Corporate domain managed by headquarters] Payment subdomain: [Regional payment portal — currently flagged] Current impact: Members are discouraged by browsers to proceed, even blocked; payment abandonment is high, credibility is being lost Scope of Work Phase 1: Root Cause Diagnosis (REQUIRED FIRST) Before any fixes, you must: [ ] Scan the payment subdomain for malware, suspicious scripts, or compromise indicators [ ] Check Google Safe Browsing status via [login to view URL] [ ] Review server logs for unauthorized access or injection attempts [ ] Identify why the domain was flagged (compromise vs. false positive vs. shared IP reputation) [ ] Provide a written report with findings and recommended fix path If the site is compromised: Clean it first. If you cannot clean it, report this immediately. Phase 2: Server-Side Preparation (MUST COMPLETE BEFORE DNS CHANGES) [ ] Obtain an SSL/TLS certificate with the new subdomain as a Subject Alternative Name (SAN) [ ] Configure the web server (Apache/Nginx) to serve this certificate when the new subdomain is requested (SNI) [ ] Update application configuration to recognize and handle the new hostname [ ] Implement HTTP → HTTPS redirects [ ] Configure HSTS headers for the payment subdomain [ ] Test the entire configuration using local hosts file overrides before any DNS changes Phase 3: DNS Cutover & Verification [ ] Coordinate with our team to request CNAME record from corporate IT [ ] Monitor DNS propagation (use dig, nslookup, or online tools) [ ] Verify SSL handshake succeeds with no hostname mismatch errors [ ] Test end-to-end payment flow on the new subdomain [ ] Confirm no mixed-content warnings or certificate errors Phase 4: Google Safe Browsing Recovery [ ] Verify ownership of the new subdomain in Google Search Console [ ] Submit Security Issues review request with documentation of fixes [ ] Monitor status and communicate timeline expectations (typically 3 days to 3 weeks) [ ] If the new subdomain is flagged, diagnose and resolve immediately Phase 5: Documentation & Handover [ ] Provide technical documentation of all changes made [ ] Document rollback procedures [ ] Provide a summary report suitable for non-technical stakeholders Technical Requirements Table Requirement Details SSL Certificate Must include new subdomain as SAN; wildcard or single-domain certs are insufficient Server Config Must support SNI; virtual host must respond correctly to new hostname Security Headers HSTS, X-Frame-Options, X-Content-Type-Options required Redirects All HTTP traffic must 301/302 to HTTPS Compatibility Must not break existing payment processor integrations PCI DSS Changes must not violate payment card industry compliance Deliverables Root Cause Analysis Report (Phase 1) Server Configuration Documentation (Phase 2) DNS Cutover Verification (Phase 3) Google Safe Browsing Status Update (Phase 4) Final Handover Document (Phase 5) Skills Required Linux server administration (Apache/Nginx) SSL/TLS certificate management (Let's Encrypt, commercial CAs) DNS configuration and troubleshooting Google Search Console and Safe Browsing protocols Web security best practices (HSTS, SNI, mixed content) Payment gateway integration experience (preferred) Budget & Timeline Budget: $50–$80USD (fixed price, not hourly) Timeline: 5–10 business days Milestone 1: Root cause report (Day 2) — 20% payment Milestone 2: Server prep complete and tested (Day 4) — 30% payment Milestone 3: DNS cutover successful (Day 6) — 30% payment Milestone 4: Google review submitted + handover (Day 10) — 20% payment Important Notes Do NOT add the CNAME before server prep is complete. This will break the site. We will handle communication with corporate IT for DNS changes; you provide the technical specifications. If the root cause is a server compromise, cleaning it is part of this project. The old payment subdomain must remain functional during transition. All server credentials and client data must be treated as strictly confidential. How to Apply Please include: Your experience with similar security warning resolutions Confirmation you understand the server-first, DNS-second sequence Examples of SSL/SAN configurations you've implemented Your approach to root cause diagnosis Availability to start within 48 hours Questions? Ask before bidding. We value technical accuracy over speed.
Project ID: 40425635
128 proposals
Remote project
Active 1 day ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
128 freelancers are bidding on average $142 USD for this job

Hello, I understand the urgency and complexity of your project, and as a leader in the global marketplace for web services, I believe my experience aligns perfectly to successfully complete this task. My company, which I am representing here, is proficient in Linux server administration specifically with Apache and Nginx. Our team also has extensive experience managing SSL/TLS certificates with a focus on SNI compatibility, payment gateway integration experience, and DNS configuration and troubleshooting. Moreover, our company's strong emphasis on web security practices (e.g., HSTS, SNI) along with thorough knowledge on Google Search Console and Safe Browsing protocols make us the ideal choice for solving your regional payment portal issue effectively. We have worked extensively with domains recovering from a potential phishing threat like yours by identifying false positives against genuine threats. Our commitment towards delivering high-quality results under tight deadlines within your budget is something we pride ourselves on. We will not only identify the root cause of the problem but implement solutions in a way that does not violate payment card industry compliance (PCI DSS). We look forward to providing you with comprehensive technical documentation of all changes made and round-the-clock support even after project completion. Let's fix this issue together! Thanks!
$180 USD in 3 days
8.6
8.6

I see your regional payment portal is currently triggering browser security warnings. These alerts are often caused by expired or misconfigured SSL certificates, mixed content issues, or server-side security headers that need immediate adjustment to restore user trust. With over 15 years of experience, I specialize in server security, Linux environments, and PHP troubleshooting. I regularly clean hacked sites and resolve issues where websites are flagged by search engines or browsers, so I am well-equipped to audit your Apache configuration, DNS settings, and security certificates to get your portal back online securely. I can complete this work for $119.13 within 24 hours. Let me know when you are ready to provide access so I can begin the diagnostic process and fix the warnings immediately.
$119.13 USD in 1 day
8.1
8.1

Hi there, I’ve read your project on fixing the Google Safe Browsing warnings for the regional payment portal and restoring trust while maintaining PCI DSS compliance. I bring 15+ years of full-stack experience, with deep hands-on work in SSL/TLS, DNS cutovers, HSTS, and secure subdomain architecture that aligns with corporate domains. I will diagnose root causes (malware, script injections, or trust signals), then architect a secure, SAN-inclusive subdomain with SNI-enabled server configuration, HTTP->HTTPS redirects, and strict security headers. I’ll validate locally (hosts file) before DNS changes, coordinate a clean DNS cutover, and ensure the payment flow remains uninterrupted. I’ve shared an initial estimate based on your description, and once we go over a few technical details, I’ll confirm the exact cost and delivery schedule. What you’ll get: detailed root cause report, secure server prep, DNS cutover plan, Google Safe Browsing recovery steps, and comprehensive handover docs. I’ll also provide rollback procedures and non-technical summaries for stakeholders. From a security and DNS architecture perspective, what is the most critical constraint you want me to validate first: malware indicators on the payment subdomain, or the integrity of the SAN/SSL setup across the new subdomain, and why? Best regards, Asad
$95 USD in 3 days
8.2
8.2

Hello, I hope you are doing well. With 8 years of experience as a Server Administrator, I have extensive knowledge of various server technologies, troubleshooting techniques, and performance optimization. I can analyze and resolve any server-related issues efficiently based on your requirements. Please feel free to reach out if you have any queries or need assistance with server management. I’d be happy to help. Best regards,
$120 USD in 2 days
7.8
7.8

Hello Sir, I will clean and secure your website guaranteed but first I need to know your website name so that I can take a look and tell you final price. I am ready to start right now. Thanks
$55 USD in 3 days
7.2
7.2

Google Safe Browsing flags usually stem from injected scripts or compromised DNS records rather than actual phishing. Your requirement for a diagnosis report before fixes is the right call. I've managed security for fintech platforms handling sensitive transactions where trust was critical. We used log analysis and malware scanning to isolate injection points without taking systems offline. Cleaning the site is step one, but ensuring the subdomain reputation clears with Google is step two. I can handle the scan and the remediation plan. Are you currently able to access the server logs directly?
$123 USD in 7 days
6.8
6.8

Good morning! I'll diagnose why your payment subdomain is flagged (malware scan, Safe Browsing check, log review), clean any compromise, configure Apache/Nginx with a SAN SSL certificate and SNI, set HSTS and security headers, coordinate the CNAME cutover, submit a Google Safe Browsing review request, and deliver full technical documentation plus a non-technical summary. Any specific deadline I should work around?
$220 USD in 7 days
6.5
6.5

Hello, I can help review the flagged payment subdomain and identify why browsers are treating it as a phishing threat, then set up a clean and secure subdomain under your main corporate domain. I’ve handled similar cases where Safe Browsing warnings were cleared after careful diagnosis and proper SSL, server, and header configuration. I can keep your payment flow stable while preparing the new environment, making sure the SSL SAN setup, HSTS, redirects, and server configs are correct before any DNS actions. I’ll also follow through with Safe Browsing recovery and provide clear documentation. Thanks, Teo
$200 USD in 2 days
6.5
6.5

As an experienced Full Stack Developer, I understand the criticality of securing and maintaining regional payment portals. My decade-long career has revolved around using digital strategies and modern technologies to build, grow, and scale secure platforms for businesses like yours. I have a deep knowledge of Linux servers (including Apache/Nginx), SSL/TLS certificate management (including Let's Encrypt, commercial CAs), DNS configuration and troubleshooting, Google Search Console and Safe Browsing protocols, and web security best practices. In addition to my robust technical acumen, my expertise in Payment Gateway Integration is particularly relevant to this task. I am aligned with your project goals as I have a strong grasp on not only building secure systems but also ensuring they comply with essential regulations such as PCI DSS. Beyond merely completing the required tasks as outlined in your project description, I want to assure you that I am committed to getting your regional payment portal back on track, helping you regain member trust and enhance credibility. My clients value that I don't simply develop websites—I provide thought-out solutions that generate tangible results for their business. By choosing me, you can rest assured of a successful project delivery and a long-term partner who offers exceptional support even after the task is done.
$200 USD in 7 days
6.3
6.3

As a seasoned Network and Systems Engineer with over ten years of professional experience, I believe I possess the strengths and skills needed to mitigate and resolve the issues your regional payment subdomain is currently experiencing. A comprehensive analysis will be carried out to diagnose the root cause of Google Safe Browsing's negative assessment, paying particular attention to possible malware and unauthorized access in server logs. Additionally, I'll cater for SSL/TLS certificate management ensuring its configuration complies with industry standards particularly within DNS changes to eliminate mixed-content warnings or certificate mismatches. Having worked extensively with Linux server administration (Apache/Nginx), DNS configuration, web security best practices (such as HSTS, SNI, mixed content), as well as carrying out Post-Cut checks, recognizing and solve errors during this transition process. In addition to my technical background, my strong analytical skills and attention to detail make me well-suited for identifying false positives or if there have been any compromises concerning your payment domain. My budget-conscious system design approach ensures compliance with PCI DSS while guaranteeing non-disruption of existing payment integrations. I aim at delivering 100% project satisfaction and prompt communication throughout the project timeline. When you choose me= Farooq, you are choosing quality service tailored to meet all your needs.
$250 USD in 3 days
6.2
6.2

Hello, I understand you need a structured, security-first remediation of a payment subdomain currently flagged by Google Safe Browsing, with a strict requirement to diagnose the root cause first, secure the server properly, and only then proceed with DNS migration and recovery of trust signals—without disrupting ongoing payment operations. I will begin with a full root cause investigation including malware scan, server log analysis, and Safe Browsing diagnostics to determine whether this is a compromise, misconfiguration, or reputation issue. If any malicious code or injection is found, I will clean and harden the environment before any further changes. I will then implement a secure server-side configuration with proper SSL/TLS (SAN/SNI), enforced HTTPS, HSTS headers, and secure virtual host setup, tested locally before any DNS changes. Once the environment is verified, I will coordinate a safe DNS cutover, validate SSL handshake integrity, and test the full payment flow to ensure no interruptions or mixed content issues. Finally, I will guide the Google Search Console review process and monitor Safe Browsing status recovery, providing full documentation, rollback procedures, and a clear technical report for stakeholders. I’m ready to start within 48 hours and can follow your milestone structure precisely. Please share server access details and current domain configuration so I can begin the diagnostic phase immediately. Thanks, Asif
$250 USD in 3 days
6.3
6.3

Hi, I can diagnose why your payment subdomain is flagged and implement a secure new subdomain under your corporate domain without downtime. I’ve handled SSL/SAN setups, HSTS enforcement, and DNS cutovers while preserving PCI-compliant payment flows. I’ll start with a thorough root cause analysis scanning for malware, reviewing logs, and verifying Safe Browsing status before any DNS change. Do you have existing server access and logs ready for the initial diagnosis phase? Best Regards, Fizza Nadeem K
$80 USD in 4 days
5.8
5.8

Hello, I hope this message finds you well. I understand that your regional payment subdomain is being flagged by Google Safe Browsing and other security filters. This is a critical issue that can impact user trust and business operations. With my background in PHP, web security, and experience with payment gateway integration, I am well-equipped to help resolve these security warnings effectively. I can conduct a thorough analysis of your subdomain's configuration and implement the necessary changes to ensure compliance with security standards. Additionally, I will provide recommendations to prevent future issues. I am committed to delivering a secure and seamless user experience. To better understand your needs, I have a few questions: Q1: What specific security warnings are you encountering? Q2: Have any recent changes been made to the subdomain or server configuration? Q3: Are there any specific deadlines for resolving this issue? I look forward to the opportunity to assist you with this project. Best regards.
$200 USD in 2 days
6.0
6.0

Hi, I can help you to fix your payment portal recognize as phising site. I am interested in this project. Can start this project now. Thanks Ashish A.
$100 USD in 2 days
5.5
5.5

Hi, I have gone through your project description and understand you’re looking for help diagnosing and resolving browser security warnings affecting your payment subdomain, including SSL/TLS setup, DNS cutover, and Google Safe Browsing recovery. I have experience with Linux server administration, Apache/Nginx configuration, SSL/SAN certificate setup, DNS migration, web security hardening, and payment-related infrastructure. I’ve worked on issues involving malware cleanup, mixed-content problems, HSTS configuration, reverse proxy/security headers, and restoring flagged domains. I understand the required server-first, DNS-second deployment process and can handle the root cause investigation before any migration steps. I can also assist with Google Search Console verification, Safe Browsing review requests, and secure subdomain deployment without disrupting the existing payment flow. Best regards, Juan
$140 USD in 1 day
5.3
5.3

Hello There,\n\nI understand how disruptive browser security warnings are to your regional payment flow. I’m a seasoned Linux server and web-security expert focused on stabilizing trusted payment subdomains under an enterprise domain. I’ll diagnose, isolate, and remediate the root cause while preserving the integrity of your primary corporate domain and payment integrations. My approach emphasizes minimal downtime and a clean, scalable path to a trusted subdomain that browsers will respect.\n\nIn similar engagements I’ve identified misconfigurations, stale certificates, and script injections, then rehosted or rebuilt the subdomain with strict TLS, SNI-enabled virtual hosting, and robust security headers (HSTS, X-Frame-Options, X-Content-Type-Options). I’ve implemented SAN-based certs and careful DNS cutovers to avoid disruptions to the old subdomain and to ensure a seamless transition for users and payment processors.\n\nI can deliver this work using my hands-on experience with Apache/Nginx, SSL/TLS management, DNS, and PCI-compliant workflows. I’ll follow your Phase 1-5 plan, coordinate DNS changes, and provide clear documentation and rollback steps. I will deliver a secure, compliant, and trusted subdomain that restores user confidence. \n\nBest regards,\nBilly Bryan
$250 USD in 2 days
4.6
4.6

Good day, I am ready to tackle the challenge of fixing the security warnings on your regional payment portal. With my experience in Linux server administration, SSL/TLS certificate management, and web security best practices, I am confident in diagnosing the root cause and implementing a secure solution. Here's what I will do: - Conduct a thorough malware scan and review Google Safe Browsing status - Obtain and configure an SSL/TLS certificate with the new subdomain - Implement necessary security headers and redirects - Provide detailed documentation and handover support Looking forward to delivering high-quality work within budget. Regards, Abdul Moeed
$30 USD in 1 day
4.7
4.7

Hello, With over 7 years of experience in PHP and Web Security, I have a strong background in resolving complex security issues like the one you are facing with your regional payment portal. I understand the urgency and importance of restoring trust and functionality to your payment subdomain. Having built scalable systems in SaaS, fintech, and eCommerce, I specialize in full-stack development using Node.js, TypeScript, Python, and Go. My expertise in designing low-latency architectures and intelligent applications aligns well with your project requirements. Let's start a chat to discuss your project further and how I can provide a professional solution tailored to your needs. Thanks
$140 USD in 7 days
4.5
4.5

As a seasoned freelancer with in-depth expertise in areas like DNS and PHP, I bring the perfect mix of skills and experience needed to resolve your browser security issue. With my proficiency in Linux server administration, I can thoroughly scan your regional payment subdomain for malware, suspicious scripts and unauthorized access - effectively tackling the root cause itself. Additionally, I have a firm grasp on SSL/TLS certificate management (including Let's Encrypt and commercial CAs) which is crucial to successfully configure the webserver - essential for serving your certificate when requested. Furthermore, my competency extends to Google Search Console, making me uniquely capable of helping your payment portal regain its Google Safe Browsing status. Should the site be flagged again, I am adept at diagnosing and resolving such issues without delay. My comprehensive approach spans beyond just 'fixing bugs' - it extends towards providing complete technical documentation of all the modifications made along with rollback procedures and a detailed summary suitable for non-technical stakeholders. Lastly, my 'Dlite Info Tech Pvt Ltd' team's motto is 'Code Solutions That Deliver Results'. Putting the emphasis on solving problems rather than just 'fixing issues', I offer fast, clean and reliable solutions that perform like a pro. Rest assured that choosing me will mean not just a fix but long-term improved security, performance and credibility for your regional payment portal.
$150 USD in 7 days
4.6
4.6

Your members are running into scary browser warnings and payment blocks on your regional portal, eroding trust and pushing them to abandon their transactions. That credibility hit stings, especially when every payment counts. You will have a clean, trusted payment subdomain under your main corporate domain, with every browser warning gone and a clear path back to Google’s safe list. First, I’ll dig into your current subdomain to catch any signs of malware, unauthorized access or a false positive, then deliver a clear report on what triggered the flag. Next, I’ll prepare your new secure subdomain at the server level, test every config in isolation and only then coordinate with your team for DNS. Finally, I’ll guide your portal through Google’s review so your members can pay without hesitation. Would you like updates after each phase or just a summary at the end?
$134 USD in 7 days
4.6
4.6

Belfast, United Kingdom
Payment method verified
Member since May 31, 2010
₹100-400 INR / hour
$2-8 USD / hour
$10-30 USD
$10-30 USD
$2-8 USD / hour
$30-250 USD
$10-30 USD
$250-750 USD
€18-36 EUR / hour
₹1500-12500 INR
₹1500-12500 INR
$15-25 USD / hour
$15-25 USD / hour
$250-750 USD
$250-750 USD
$250-750 USD
$30-250 USD
$30-250 CAD
$30-250 USD
$10-30 USD
$250-750 USD
$10-30 USD
₹12500-37500 INR
₹1500-12500 INR
$10-30 USD