
Kapalı
İlan edilme:
Teslimde ödenir
Our production Drupal site is showing clear signs of two vulnerabilities—SQL injection and cross-site scripting. I have been able to trace some of the problem areas, but the investigation is only partially complete and I need a seasoned Drupal security specialist to finish the audit, patch every instance, and confirm that no attack vectors remain. Environment details • Drupal core only; there is no custom code or third-party module layer to contend with, so all issues should be within core configuration or outdated core files. • Access to staging and production servers, plus recent database snapshots, will be provided the moment the project starts. Scope of work 1. Complete a thorough security scan (manual review + preferred tools such as Drupal Security Review, OWASP ZAP, or your equivalent). 2. Pinpoint every SQL injection and XSS entry point left in the codebase or database. 3. Patch, update, or re-configure affected core files/settings, ensuring no functionality loss. 4. Provide a concise remediation report outlining: – Location of each vulnerability found – Exact fix applied – Recommended preventive measures for future deployments 5. Run final penetration tests to demonstrate that the site is clean and stable. Acceptance criteria • No detectable SQLi or XSS issues in automated scans and manual testing. • Site functionality intact across all existing user flows. • Final report delivered and approved. If this is within your wheelhouse, I’m ready to hand over server credentials and get the hardening started right away.
Proje No: 40091054
18 teklifler
Uzaktan proje
Son aktiviteden bu yana geçen zaman 1 ay önce
Bütçenizi ve zaman çerçevenizi belirleyin
Çalışmanız için ödeme alın
Teklifinizin ana hatlarını belirleyin
Kaydolmak ve işlere teklif vermek ücretsizdir
18 freelancer bu proje için ortalama ₹8.003 INR teklif veriyor

Hi, I am writing to offer my expertise as a Drupal security specialist to help resolve the SQL injection and cross-site scripting vulnerabilities currently affecting your production site. With extensive experience securing Drupal core–only environments, I am well equipped to complete your partially finished investigation and deliver a fully hardened, attack-free platform. I understand that the issues are likely rooted in outdated core files or insecure configurations rather than custom or third-party code. Upon receiving access to your staging and production servers, I will conduct a thorough security audit using a combination of manual review and trusted tools such as Drupal Security Review and OWASP ZAP. This approach ensures every remaining SQLi and XSS entry point is accurately identified. I will carefully patch, update, or reconfigure affected core components while preserving all existing functionality and user flows. Particular attention will be given to stored data, input handling, and output rendering to eliminate both reflected and stored vulnerabilities. At the conclusion of the engagement, you will receive a clear remediation report detailing each vulnerability, the exact fix applied, and recommendations to prevent recurrence. Final penetration testing will confirm that the site is clean, stable, and secure. This work is well within my expertise, and I am ready to begin immediately. I look forward to hearing from you. Thanks
₹1.500 INR 1 gün içinde
5,9
5,9

Hello! I can secure your Drupal site efficiently. Problem: Your Drupal site has SQL injection and XSS vulnerabilities, putting data and users at risk. Solution: I will perform a thorough security audit using manual review and tools like Drupal Security Review and OWASP ZAP, patch all identified issues in core configuration, and ensure no functionality is broken. Full staging and production testing will confirm fixes. Result: Your Drupal site will be fully hardened, free from SQLi/XSS vulnerabilities, with a concise remediation report detailing fixes and future prevention steps. Final penetration tests will verify a secure, stable environment. 15+ years of development knowledge guide maintainable and scalable software delivery. Ready to start immediately and deliver a fully secure site!
₹12.000 INR 7 gün içinde
5,3
5,3

Hi there! I’ve reviewed your project and specialize in Drupal security audits. I’ll complete the investigation for SQL injection and cross-site scripting vulnerabilities, patch the core files, and ensure no attack vectors remain. Let’s schedule a quick meeting to discuss the details. Best Regards, Amjad Iqbal
₹7.500 INR 60 gün içinde
4,8
4,8

Hi , Good morning! Already have something live to show you I am skilled mobile coder with skills including Linux, SQL, Penetration Testing, MySQL, PHP, Drupal, Web Security and Security. Please send a message to discuss more about this project. Your Sincerely
₹1.500 INR 4 gün içinde
4,5
4,5

Hi, I’m Jagjeet Singh, with 10+ years of experience working on secure, production-grade Drupal websites. I can complete a full security audit of your Drupal core installation, identify all remaining SQL injection and XSS vulnerabilities, and apply the required core updates, patches, and configuration fixes without breaking existing functionality. I’ll validate everything with manual review and trusted security tools, then confirm the site is clean through final penetration testing. What I’ll deliver: Complete security scan and vulnerability assessment Patching and hardening of all affected Drupal core areas Verification that no SQLi/XSS vectors remain Clear remediation report (issue location, fix applied, prevention steps) I’m ready to start immediately and work directly on staging and production as needed. Best regards, Jagjeet Singh
₹1.500 INR 1 gün içinde
4,1
4,1

Hey there, I am a Drupal security engineer with over 5 years of experience hardening and remediating production Drupal sites. I can complete a full security audit, identify and eliminate all SQL injection and XSS vectors, apply core updates/config fixes, and validate with final penetration testing. My expertise includes Drupal core security, OWASP methodologies, secure configuration, and vulnerability remediation reporting. With my experience, I’m sure I can complete this efficiently while preserving full site functionality—feel free to share access and we can start immediately. Regards,
₹6.000 INR 5 gün içinde
2,3
2,3

Good day, With extensive expertise in Drupal security and a proven record of eliminating critical vulnerabilities, I specialize in delivering robust, end-to-end protections that safeguard sites without compromising functionality. My recent success includes a comprehensive core hardening project that eradicated SQL injection and XSS risks under tight deadlines, ensuring seamless user experiences. I am fully available to begin immediately and meet your timeline. Leveraging advanced tools like Drupal Security Review and OWASP ZAP alongside meticulous manual auditing, I will thoroughly identify and patch every vulnerability within your core setup. This approach guarantees a clean, optimized, and resilient Drupal environment delivered with rapid turnaround. My premium, integrated solutions come at a competitive rate and prioritize long-term stability. I welcome the opportunity to discuss your requirements in detail. Thank you.
₹8.750 INR 30 gün içinde
2,0
2,0

I have recently completed a project like this, which gives me confidence in delivering strong results for you. I love your idea of a thorough security audit focusing on Drupal core vulnerabilities, and I see this project as an ideal match for my expertise. I fully understand the need to identify and patch SQL injection and XSS entry points in core files without disrupting site functionality, along with providing a clear remediation report and final penetration testing. While I am new to freelancer, I have tons of experience and have done other projects off site. I’m excited to contribute at a discount to build my reputation. When will our journey begin? Luke H.
₹7.000 INR 7 gün içinde
1,9
1,9

Dear Client, I’m a Certified Drupal Security Specialist with 6+ years of experience hardening Drupal core environments. I’ll immediately audit, patch, and validate your site against SQLi and XSS—with zero functionality loss. My Approach Audit: Run Drupal Security Review, OWASP ZAP, and manual code review on staging Analyze DB snapshots for injected payloads or malicious entries Patch: Update Drupal core to latest secure version Fix misconfigurations (e.g., input filters, form API settings) Sanitize database content (remove stored XSS/SQLi payloads) Validate: Re-test all user flows post-patch Confirm clean results via automated + manual pen tests Deliverables Remediation Report: • Vulnerability locations (file/line #) • Exact fixes applied • Prevention plan (e.g., core update policy, input validation rules) Final Pen Test Proof: Scan results + manual validation evidence Why Me? Drupal-focused (no plugin distractions) Zero downtime: All work on staging first 100% compliance: Fixes align with Drupal Security Team advisories I can start within 2 hours of receiving credentials. Let’s lock down your site. Best regards, Rasel Ahmed Drupal Security Specialist | OSCP | 10 U.S. Patents
₹5.000 INR 3 gün içinde
0,0
0,0

I am a perfect fit for your project. Your need for a thorough Drupal core security audit and patching to eliminate SQL injection and cross-site scripting vulnerabilities aligns with my expertise in delivering clean, professional, and seamless security solutions that preserve full functionality. While I am new to Freelancer, I have extensive real-world experience and have completed multiple projects off the platform, specializing in integrated and automated security assessments using tools like OWASP ZAP. My approach ensures a user-friendly, secure environment with clear documentation and preventative guidance. I would love to chat more about your project! Regards, keagan
₹9.400 INR 14 gün içinde
0,0
0,0

Getting a perfect fit for your project is as easy as finding someone who understands the critical need for a clean, professional, and seamless Drupal security audit focused on SQL injection and XSS vulnerabilities within core configurations. Your requirement for thorough manual and automated scanning, pinpointing vulnerabilities, patching without losing functionality, and providing a clear remediation report aligns perfectly with my expertise. While I am new to Freelancer, I have tons of experience and have done other Drupal security projects off site, handling security hardening with precision and care. I would love to chat more about your project! Regards, Nadia Du Preez
₹9.400 INR 14 gün içinde
0,0
0,0

Trivandrum, India
Ödeme yöntemi onaylandı
Ara 19, 2016 tarihinden bu yana üye
₹1500-12500 INR
₹1500-12500 INR
₹12500-37500 INR
₹600-1500 INR
₹1500-12500 INR
$30-250 USD
₹12500-37500 INR
₹75000-150000 INR
₹1500-12500 INR
$30-250 USD
₹600-1500 INR
$30-250 USD
$30-250 USD
$250-750 USD
$250-750 AUD
$30-250 CAD
$250-750 USD
£20-250 GBP
$100-150 CAD
$30-250 CAD
$750-1500 AUD
$10-30 USD
₹1500-12500 INR
€30-250 EUR
$30-250 USD