
Closed
Posted
Paid on delivery
I have a suite of customer-facing mobile apps and need a seasoned ethical hacker to put them through a full offensive security cycle, then guide me through hardening them. The assessment must concentrate solely on the mobile layer—both Android and iOS builds are in scope—and my highest priority is preventing data breaches. Here’s the flow I envision: you start with reconnaissance and dynamic/static analysis, uncover every real-world exploit you can (OWASP MSTG, Burp Suite Mobile Assistant, Frida, and similar tools are welcome), and document proof-of-concept attacks. After we review the findings together, I’ll expect concise remediation steps and, where feasible, direct code or configuration fixes from you. Once patches are applied, you’ll run a final validation pass to confirm the vulnerabilities are fully closed and that a hardened security layer now sits between the apps and any backend services or third-party SDKs. Deliverables • Initial penetration report with risk-rated findings and reproducible steps • Actionable remediation guide or implemented fixes (pull requests / configuration changes) • Final verification report showing zero critical or high findings Acceptance criteria: every critical or high-severity issue identified in the first report must be demonstrably resolved, and sensitive data should never be exposed at rest or in transit after hardening. If this end-to-end cycle matches your expertise, let’s get started.
Project ID: 40532311
37 proposals
Remote project
Active 19 hours ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
37 freelancers are bidding on average ₹25,275 INR for this job

Hi there, I’ve reviewed your security testing needs and would be glad to assist. With 10+ years of experience in VAPT, vulnerability assessment, and web/app security testing, I help identify and fix critical security flaws before they become threats. You’ll get a detailed report, practical remediation steps, and complete confidentiality — following OWASP and industry best practices. Let’s connect to secure your application the right way! Best, Bhargav Security Specialist | VAPT & AppSec | 10+ Years Experience
₹25,000 INR in 7 days
7.0
7.0

—>>Mobile Application Security Assessment & Hardening<<— Hello, I’ll perform a comprehensive security assessment of your Android and iOS applications, identifying real-world vulnerabilities, validating exploitability, and guiding the complete remediation and verification process to strengthen protection against data breaches. WITH 3 MONTHS FREE SUPPORT AFTER DEVELOPMENT READY TO START WORK IMMEDIATELY!!!!! LET'S CHAT … Thanks
₹25,000 INR in 7 days
7.3
7.3

Hello, I am a Cyber Security & Digital Forensics professional with 9+ years of experience in penetration testing, mobile application security, and vulnerability assessment. I can perform a comprehensive end-to-end security assessment of your Android and iOS applications, focusing on identifying and mitigating risks that could lead to data breaches. My approach includes static and dynamic analysis, API and network traffic assessment, reverse engineering, runtime testing using tools such as Burp Suite, Frida, MobSF, OWASP MSTG methodologies, and manual exploitation techniques to uncover real-world attack paths. All findings will be documented with proof-of-concept evidence, risk ratings, impact analysis, and clear reproduction steps. Following the assessment, I will provide actionable remediation guidance and assist with security hardening, including configuration recommendations and code-level fixes where applicable. Once remediation is completed, I will conduct a full retest to verify that all critical and high-risk vulnerabilities have been resolved and that sensitive data is adequately protected both at rest and in transit. Deliverables will include: • Detailed penetration testing report with risk-rated findings • Remediation guide and hardening recommendations • retest report confirming closure of identified vulnerabilities Best Regards, Kajal Majhi Cyber Security & Digital Forensics Specialist
₹30,000 INR in 7 days
5.0
5.0

Your biggest risk is direct-data compromise via client-side storage, insecure comms, and third-party SDK leaks. My focus would be full static and dynamic analysis—disassembling the APK/IPA, running Frida scripts, and live-intercept with Burp Suite Mobile Assistant on both platforms. I work with OWASP MSTG as baseline and document every real-world exploit with proof and steps. I've guided mobile teams through exactly this: recon, exploit, remediation with code-level fixes, and a final clean run. Remediation includes both config changes and actual code patches if you share source. Is your mobile backend in scope for indirect vector checks, or only pure app-side? I can begin with a detailed recon this week. Pradeep
₹25,000 INR in 7 days
4.6
4.6

As a seasoned Full Stack Developer and Digital Solutions Expert with over a decade of experience, I have acquired a deep understanding of mobile app development for both Android and iOS. I specialize in developing secure software that resolutely safeguards against potential vulnerabilities. My proficiency with the OWASP MSTG, Burp Suite Mobile Assistant, Frida, and other similar tools, coupled with my knack for dynamic/static analysis, equips me to effectively identify potential threats and provide incisive solutions. Pitching proof-of-concept attacks would be just the beginning; what I really strive for is building comprehensive security architectures that protect all aspects of your application not only during but also post-development. This includes identifying any potential data breaches and ensuring sensitive information is never exposed - both at rest and in transit. Moreover, after applying patches, I will conduct a meticulous validation pass to verify that the security enhancements are indeed robust.
₹27,500 INR in 7 days
4.8
4.8

With nearly 20 years of experience in academia and software engineering, I believe that I possess the unique combination of technical proficiency and creativity that is necessary to execute your project effectively. As an expert in AI-driven solutions, I have cultivated a deep understanding of data security, and am adept at identifying vulnerabilities, creating robust fixes, and implementing them critically. My skillsets extend to mobile app development for both Android and iOS platforms – fitting perfectly into your project demands. Having led a team through the creation of multiple advanced digital products, I understand the criticality of secure user-facing applications. You can rely on me for a comprehensive assessment using tools like OWASP MSTG, Burp Suite Mobile Assistant, and Frida to uncover every real-world exploit that may be endangering your customer data. I will then work closely with you to suggest concise but actionable remediation steps to ensure fully-closed vulnerabilities. To back it all up, the uniqueness of my pitch lies in my deep-rooted problem-solving abilities fuelled by years spent in academia. This has honed my sharp strategist's mind which makes me an ideal teammate for you as we embark on this journey to secure your mobile apps from any possible breaches. I anxiously await the chance to bring my skills to bear on your project!
₹12,500 INR in 7 days
4.3
4.3

Securing mobile apps is a core area of expertise that aligns perfectly with your project's needs. With my proficiency in ethical hacking and offensive security, I can provide a comprehensive penetration testing for both your Android and iOS builds using tools such as OWASP MSTG, Burp Suite Mobile Assistant, and Frida. My approach will be meticulous, from reconnaissance to dynamic/static analysis followed by detailed documentation of real-world exploits, proof-of-concept attacks, and risk-rated findings in an initial report. But my contribution doesn't just stop at finding loopholes. I am also capable of providing direct code or configuration fixes where applicable and drafting a concise yet practical remediation guide. It's important to me that every critical issue identified is truly resolved, which is why I'll run a final validation pass to ensure all vulnerabilities have been effectively closed off between the apps and the backend services or third-party SDKs. Rest assured, sensitive data will never be exposed again after hardening. In addition to my security skills, my experience spans across diverse technologies such as React Native, Node.js, MongoDB, REST APIs and more - all relevant for this project. Let me utilize this expertise to consolidate your security measures while ensuring smooth functionality for your customer-facing mobile apps. I'm eager to exceed your expectation, so let's do it together!
₹25,000 INR in 7 days
4.3
4.3

I understand that you need a complete mobile application security assessment focused on identifying and eliminating real-world risks before they lead to data exposure. The engagement covers Android and iOS applications, including static analysis, dynamic testing, API interaction review, data storage validation, transport security checks, authentication assessment, and third-party SDK evaluation. My approach is to systematically identify vulnerabilities, document reproducible findings with clear risk ratings, recommend practical remediation steps, assist with implementing fixes where required, and perform a final verification cycle. The objective is not just finding issues but ensuring all critical security gaps are properly resolved.
₹25,000 INR in 15 days
4.4
4.4

Hello, I'm Karthik, with 15+ years of experience in application security, secure software development, mobile applications, and vulnerability assessment. I can perform a comprehensive security assessment of your Android and iOS applications following OWASP MSTG guidelines, focusing on identifying vulnerabilities that could lead to data exposure, unauthorized access, insecure storage, API abuse, and communication security issues. ✔ Static & Dynamic Security Analysis ✔ Mobile API & Authentication Testing ✔ Data-at-Rest & Data-in-Transit Validation ✔ Reverse Engineering Assessment ✔ OWASP MSTG & MASVS Review ✔ Detailed Risk-Rated Security Report ✔ Remediation Guidance and Validation Testing ✔ Final Verification Report after fixes My approach includes discovery, assessment, proof-of-concept validation, remediation recommendations, retesting, and final certification of resolved findings. The goal is to eliminate critical and high-risk vulnerabilities while strengthening the overall security posture of your mobile ecosystem. I can start immediately and work closely with your development team throughout the remediation and verification process. Best Regards, Karthik 15+ Years | Application Security | Mobile Security | Secure Architecture
₹50,000 INR in 7 days
3.1
3.1

Hello, I can run a full **mobile-focused offensive security assessment** across both your Android and iOS applications, following OWASP MSTG standards and real-world attack simulation techniques. My process will include static and dynamic analysis, traffic inspection, reverse engineering where applicable, and runtime testing using tools such as Burp Suite, Frida, and platform-specific debugging methods. The goal is to identify not just theoretical issues, but exploitable vulnerabilities that could lead to data exposure or unauthorized access. You will receive a structured penetration report with risk-ranked findings, clear proof-of-concept steps, and prioritised remediation guidance. Where appropriate, I can also provide direct code-level fixes or configuration changes. After patches are applied, I will perform a validation pass to confirm that all critical and high-severity issues are fully resolved and that sensitive data is properly protected in transit and at rest. The final deliverable will be a hardened security posture backed by a clean verification report. Ready to begin immediately upon access. Best regards
₹25,000 INR in 7 days
2.3
2.3

Hello, I am interested in assisting you with the end-to-end offensive security assessment and hardening of your Android and iOS mobile applications. ? I have 6+ years of hands-on experience in Mobile, API, Web, Cloud, and Server Security Assessments, and I hold CEH, CRTP, and CRTA certifications. My approach is manual-first and focused on preventing data breaches, sensitive data exposure, insecure storage, weak transport security, authentication flaws, API abuse, and third-party SDK risks. For this engagement, I can help with: ? Android and iOS penetration testing ? Reconnaissance, static and dynamic analysis ? OWASP MASVS/MSTG-based assessment ?️ Testing with Burp Suite, Frida, MobSF, JADX, Objection, and similar tools ? Sensitive data testing at rest and in transit ? Authentication, session, and access-control validation ? SDK and configuration review ⚙️ Hardening guidance and validation Deliverables will include an initial risk-rated penetration report, reproducible PoC steps, business impact, actionable remediation guidance, and a final verification report after fixes are applied. I am comfortable signing an NDA and working strictly within the approved scope. ✅ Please share the Android/iOS builds, test credentials, API details, and testing environment. Once reviewed, I can provide the timeline, approach, and commercials. Regards, Keyur
₹25,000 INR in 7 days
0.6
0.6

With the experience and dedication we bring to the table, we are the ideal fit for your end-to-end mobile app penetration needs. Our solid track record in Android and iOS development, combined with our astute understanding of how mischief-makers think, will equip us to dig deep into every nook and cranny of your customer-facing mobile apps. Using industry-relevant tools like OWASP MSTG, Burp Suite Mobile Assistant, Frida and more, we will perform a thorough reconnaissance and exploit analysis, furnishing you with all the valuable details you need to tighten your app’s security. We don't just stop at identifying vulnerabilities though. Drawing from our wide-ranging capabilities in both frontend and backend development, we are well-positioned to provide actionable remediation guidance swiftly. Whether it is implementing code fixes or tweaking configurations, be assured that you'll not only know what needs fixing but also receive practical assistance on how to tackle any issues head-on. In short, we leave no stone unturned in safeguarding your customers' data. With our collaboration, expect a detailed penetration report equipped with risk-rated findings, reproducible steps for verification purposes as well as an efficient guide indicating precisely how each issue found can be resolved.
₹35,000 INR in 7 days
0.0
0.0

Having spent years developing mobile applications, I have an in-depth understanding of their structure and the potential vulnerabilities they face. My proficiency in Android and iOS development, as well as my familiarity with tools like OWASP MSTG, Burp Suite Mobile Assistant, and Frida, make me an ideal candidate for the secure penetration and hardening of your suite of customer-facing apps. I'm acutely aware that data breaches are a significant concern for you, which is why I put emphasis on preventing this kind of incident. In line with your envisioned flow, I’ll begin with comprehensive reconnaissance and dynamic/static analysis before conducting real-world exploit exercises. My aim is to provide you not just with a penetration report, but also actionable steps for remediation, including any direct code or configuration fixes where feasible. Once the patches are applied, I'll conduct a final validation to ensure the vulnerabilities are entirely closed. My commitment to clean and scalable code means I understand the depth of potential vulnerabilities that can be harmful to your application’s security. Choosing me means gaining more than a coder but an ally who'll always prioritize delivering secure applications and dedicated long-term support to prevent any such data leaks in the future. Partnering with me will allow you to focus on your core business knowing that your mobile app security is in trusted hands!
₹25,000 INR in 7 days
0.0
0.0

As a seasoned full-stack developer with a strong focus on security, I would be an ideal fit for your Secure Mobile App Penetration project. With my experience in building and securing custom business systems, I have a comprehensive understanding of the potential vulnerabilities and best practices to prevent them. My knowledge of tools like OWASP MSTG, Burp Suite Mobile Assistant, Frida, and more make me proficient in uncovering every real-world exploit possible. What sets me apart is not only my ability to identify security flaws but also my dedication towards providing clear and actionable solutions to address those issues. My extensive understanding of mobile app development for both Android and iOS platforms allows me to create direct code fixes or configuration changes where feasible, reducing any likelihood of future vulnerabilities. More than just delivering penetration reports, remediation guides and verification reports as per your requirements, I am committed to ensuring that all the critical or high-severity issues are fully resolved in the end. My ultimate aim is to guarantee that sensitive data is never exposed at rest or in transit - an area that you have highlighted as being particularly important - and this aligns perfectly with my principles as a developer. Let's collaborate to harden your mobile apps effectively!
₹25,000 INR in 7 days
0.0
0.0

Choosing a freelancer without reviews requires trust. I take every project personally because my reputation depends on it. Most freelancers focus on completing tasks. I focus on solving problems. One advantage of working with someone building their reputation is that you get their full attention. Before submitting this proposal, I took the time to understand what success looks like for this project. I have completed many projects outside Freelancer.com and currently offer discounted rates while building my reputation on the platform. Payment is only required if the final work meets the agreed scope and requirements. I can help you achieve your goal of securing your mobile apps by conducting a thorough offensive security cycle, providing actionable remediation steps, and ensuring a hardened security layer. Let's collaborate to prevent data breaches effectively. I'd love to chat about your project! The worst that can happen is you walk away with a free consultation. Regards, Jabu
₹18,750 INR in 7 days
0.0
0.0

I'm not going to tell you I am the best person for the job; I'll show you why. Your focus on a clean, professional, and secure mobile app aligns with my expertise in conducting comprehensive security assessments. While I am new to freelancer, I have tons of experience and have done other projects off-site. I specialize in ethical hacking, leveraging tools like OWASP MSTG, Burp Suite Mobile Assistant, and Frida to uncover vulnerabilities. My approach includes delivering detailed penetration reports, actionable remediation steps, and final verification reports to ensure a seamless and secure mobile app experience. Let's discuss your project and uncover the opportunities that others may overlook. Regards, Warrick Van Eeden
₹16,900 INR in 7 days
0.0
0.0

I can support you with a complete mobile application security assessment for Android and iOS with a strong focus on identifying vulnerabilities that could lead to data exposure. With my background as a web developer, I specialize in secure architecture, API security and OWASP based best practices, and I can review application and backend interactions from a security focused perspective. I will provide clear findings with reproduction steps and practical fixes your team can implement, followed by a validation review after patches to ensure all issues are resolved and sensitive data remains protected in transit and at rest. I am ready to begin immediately and work closely with you throughout the process. Best Regards Mahad Sheikh
₹12,500 INR in 1 day
0.0
0.0

For a single android or ios application. It would be require 4 mandays to complete proper SAST and DAST for both RASP and NON-RASP. 1 Android + 1 iOS app → ₹20k
₹25,000 INR in 7 days
0.0
0.0

Hi there Before proceeding I want to clarify will I have access to the actual app builds and backend API endpoints, or only the published store versions? Here is my approach I will pull the Android and iOS builds and run static analysis using Frida and Burp Suite to find hidden vulnerabilities inside the code and network traffic. That gives us a clear risk rated findings report. Then I fix the critical issues directly through code patches and configuration changes in your Flutter and Node.js layers. Finally I retest everything to confirm zero critical findings remain and your data stays protected end to end. I am ready to dive in and get your apps locked down tight. Let us get started!
₹25,000 INR in 7 days
0.0
0.0

Hello, Resonite Technologies has a proven cybersecurity team with 15+ years of experience in mobile application security, penetration testing, secure code review, and OWASP-based assessments for Android and iOS applications. We can perform the complete end-to-end engagement you described: ✔ Mobile penetration testing aligned with OWASP MSTG ✔ Static and dynamic application security assessment ✔ Authentication, session management, API, storage, and data protection review ✔ Analysis of third-party SDKs and backend communication ✔ Validation of encryption for data at rest and in transit ✔ Proof-of-concept documentation for confirmed vulnerabilities ✔ Risk-rated findings with remediation guidance ✔ Secure code/configuration review and hardening support ✔ Post-remediation verification testing Deliverables: ✔ Initial penetration test report with severity ratings ✔ Reproducible findings and evidence ✔ Actionable remediation roadmap ✔ Fix validation and retesting ✔ Final report confirming closure of identified critical/high-risk issues Our methodology focuses on identifying real-world attack paths while ensuring practical remediation steps that development teams can implement efficiently. Estimated Timeline: • Assessment & Testing: 1–2 weeks • Remediation Support: Based on findings • Verification & Final Report: 2–4 days Regards, Karthik Resonite Technologies
₹55,000 INR in 7 days
0.0
0.0

Hyderabad, India
Member since Jun 22, 2026
$30-250 USD
$250-750 USD
$10-30 USD
₹150000-250000 INR
$30-250 USD
₹600-1500 INR
$8-15 USD / hour
$10-30 USD
$4000-9000 USD
₹1500-12500 INR
€6-12 EUR / hour
₹12500-37500 INR
$15-25 USD / hour
₹75000-150000 INR
₹1500-12500 INR
$30 USD
₹100-400 INR / hour
$30-250 USD
$8-15 USD / hour
$15-25 USD / hour