
Closed
Posted
Paid on delivery
I need a seasoned web-security professional to determine whether a live betting platform can be manipulated so that a wager’s details change either while it is still open or after it has settled. The scope covers both bet-integrity checks and a deep look at the underlying backend security. Because I have no visibility into the site’s tech stack, assume it could be anything from a fully custom build to an off-the-shelf sportsbook engine. Your job is to probe whatever you encounter, staying strictly within authorised testing boundaries. What I expect from you • A clear test plan outlining how you will confirm or rule out bet tampering, session hijacking, database manipulation and similar attacks. • Hands-on penetration testing using tools such as Burp Suite, OWASP ZAP, Wireshark or equivalents, followed by manual verification. • A concise report that explains every vulnerability you find, proof-of-concept steps, and practical remediation advice. Acceptance criteria • The report must state whether bets can be altered before closure, after closure, or not at all. • Each finding includes severity, reproduction steps and mitigation guidance. • All testing remains within legal and ethical limits; no disruption to real users or wagering outcomes in production. If you have solid experience with web application security, backend audits and betting or financial platforms, let’s talk.
Project ID: 40538969
11 proposals
Remote project
Active 4 days ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
11 freelancers are bidding on average ₹7,673 INR for this job

Hi, I can perform a comprehensive black-box vulnerability assessment of your betting platform with a strong focus on bet integrity, backend security, and business logic testing. With 16+ years of experience in cybersecurity, VAPT, web application security, and penetration testing, I follow OWASP Top 10, NIST, and industry-standard methodologies. How I Can Help • Develop a structured test plan covering bet tampering, session hijacking, API security, authentication, authorization, and backend vulnerabilities • Perform automated and manual penetration testing to validate real-world attack scenarios • Assess SQL Injection, XSS, CSRF, IDOR, session management, business logic flaws, and privilege escalation • Safely verify findings without disrupting production or affecting legitimate users Tools Burp Suite Professional, OWASP ZAP, Nuclei, SQLMap, Nmap, Wireshark, and manual testing. Deliverables • Executive summary • Detailed technical report with severity, PoC, reproduction steps, and remediation guidance • Optional retesting after fixes We can discuss the budget and timeline later. Best regards, SaD
₹7,000 INR in 7 days
5.3
5.3

Hello, I have 9+ years of experience in web application penetration testing and backend security assessments, including financial and high-risk transaction platforms. I can perform a thorough authorized security assessment to determine whether bet data can be manipulated before settlement, after settlement, or if the platform is resistant to such attacks. My assessment will combine Burp Suite, OWASP ZAP, manual API testing, session analysis, parameter tampering, business logic testing, and backend security validation to identify any weaknesses related to bet integrity, session hijacking, authorization flaws, or database manipulation. You'll receive a professional report with verified findings, proof-of-concept reproduction steps, CVSS severity ratings, and practical remediation recommendations. All testing will be conducted ethically within the agreed scope without disrupting production users or wagering activities. I look forward to discussing your requirements and helping verify the integrity of your betting platform. Best regards, Kajal Majhi Cybersecurity & Penetration Testing Specialist
₹12,000 INR in 7 days
5.0
5.0

We recently wrapped up a project very similar to this, focusing on enhancing the security and integrity of a live platform. We've built a website for financial services that required robust backend security and seamless user experience. Understanding the critical need for a secure betting platform, I will conduct comprehensive vulnerability assessments using tools like Burp Suite and OWASP ZAP. With 75+ 5-star reviews on similar projects, we excel in identifying and resolving security gaps effectively. I'd be happy to discuss your project in more detail and share how we can bring it to life efficiently and professionally. Best case, we work together. Worst case, you get free advice that helps you move forward. Regards, Martinus.
₹9,400 INR in 7 days
0.0
0.0

Hello, I am a Cybersecurity Specialist with experience in Web Application Security, API Security, Vulnerability Assessment, and Penetration Testing. Your project aligns closely with the type of security assessments I perform, particularly where application integrity, authorization controls, and backend security are critical. My testing methodology will include: • Mapping and analyzing all client-server communications related to bet placement, modification, settlement, and account actions. • Testing for parameter tampering, request manipulation, race conditions, authorization flaws, and business logic vulnerabilities. • Reviewing session management, authentication mechanisms, token handling, and account security controls. • Assessing API endpoints and backend interactions for weaknesses that could allow unauthorized changes to wager data. I testing frameworks, and network analysis utilities where appropriate. However, I rely heavily on manual testing and business-logic analysis, as these are often where critical betting-platform vulnerabilities are found.
₹6,000 INR in 7 days
0.0
0.0

Dear Client, I am interested in conducting a security assessment of your betting platform while remaining strictly within authorized testing boundaries. Scope of Assessment: - Map application workflows, APIs, authentication, and betting processes. - Test whether open or settled bets can be modified, including stake amounts, odds, event details, or outcomes. - Assess risks related to session hijacking, parameter tampering, access control flaws, and business logic vulnerabilities. - Review backend controls, transaction validation, audit logs, and data integrity mechanisms where access is provided. Methodology & Tools: - Burp Suite - OWASP ZAP - Wireshark (if applicable) - Manual verification and business logic testing Deliverables: - Summary with overall risk assessment. - Detailed findings with severity ratings, impact, proof of concept, reproduction steps, and remediation recommendations. - Final determination on whether bets can be altered before closure, after settlement, or if no evidence of tampering exists. Compliance: - All testing will be conducted within the approved scope and authorization limits, ensuring no disruption to production systems, users, or wagering outcomes. I look forward to discussing the testing environment, scope, and authorization requirements. Best Regards, Azam Ali Cybersecurity Student | Web Application Security Enthusiast Specializing in Web Security, API Security, SOC Operations, and AI-Driven Security Solutions.
₹7,000 INR in 10 days
0.0
0.0

Hi, I can perform a focused penetration test of your live betting platform to determine whether wager details can be manipulated while a bet is still open or after it has settled, while remaining strictly within authorised testing boundaries. The assessment will cover bet-integrity controls, session security, request tampering, race conditions, authorization flaws, and deeper backend weaknesses that could affect wagering logic or stored outcomes. My approach includes mapping the full betting workflow, intercepting and modifying requests, validating how the server handles bet creation and settlement states, and testing for issues such as session hijacking, IDOR, replay, business-logic abuse, and possible database-impacting flaws. Testing will be performed using tools such as Burp Suite, OWASP ZAP, Wireshark, and equivalent manual techniques, with all findings manually verified before reporting. The final deliverable will be a concise report covering each confirmed vulnerability, proof-of-concept reproduction steps, business impact, and practical remediation guidance for your development team. Once scope, test accounts, and access details are shared, the engagement can be scheduled accordingly.
₹9,500 INR in 5 days
0.0
0.0

> I believe I am a strong candidate for this scholarship because of my dedication to academic excellence, personal growth, and community impact. As a Cybersecurity student, I have consistently maintained strong academic performance while actively developing practical skills through certifications, research, and hands-on learning. Despite financial challenges, I remain committed to achieving my educational and career goals. This scholarship would ease the financial burden of my studies and allow me to focus more on learning, research, and contributing positively to society. I am determined to use the knowledge and opportunities gained to create meaningful solutions, support others, and make a lasting impact in my community and beyond.
₹7,000 INR in 7 days
0.0
0.0

You can use this proposal. It is professional, highlights your cybersecurity experience, and fits the client's requirements. Hello, I am a Cybersecurity Analyst with hands-on experience in Web Application Penetration Testing (WAPT), API security testing, and backend security assessments. I have worked on identifying business logic flaws, session management issues, authorization bypass, parameter tampering, race conditions, and API vulnerabilities using Burp Suite, OWASP ZAP, Wireshark, Postman, Nmap, and manual testing techniques. For your betting platform, I will perform a thorough security assessment to determine whether bets can be modified before or after settlement. I will test bet integrity, session security, backend validation, request tampering, and business logic while ensuring all testing is conducted within authorized and ethical boundaries. You will receive a detailed report including: - Whether bet tampering is possible before or after settlement. - Severity of each finding. - Step-by-step proof of concept. - Practical remediation recommendations. I prioritize clear communication, accurate results, and timely delivery. I look forward to discussing your project and helping secure your betting platform.
₹7,000 INR in 7 days
0.0
0.0

I can perform a comprehensive security assessment of the betting platform, focusing on business logic flaws, authorization issues, session management, backend security, and potential bet manipulation within the authorized scope. A detailed report with proof-of-concept findings, severity ratings, and remediation recommendations will be provided.
₹4,500 INR in 2 days
0.0
0.0

What Makes Us Different We combine manual penetration testing, automated security scanning, and AI-assisted analysis to maximize coverage and help identify vulnerabilities efficiently. Every finding is manually validated and accompanied by practical remediation guidance, ensuring accurate results and actionable recommendations.
₹8,000 INR in 4 days
0.0
0.0

Srinagar, India
Member since Jun 11, 2026
₹1500-12500 INR
₹1500-12500 INR
₹12500-37500 INR
$10-30 USD
$250-750 AUD
£750-1500 GBP
$30-250 USD
$10-30 USD
$30-250 USD
$250-750 AUD
₹400-750 INR / hour
₹1500-12500 INR
$30-50 USD
$30-250 USD
$250-750 USD
$250-500 USD
₹750-1250 INR / hour
$15-25 USD / hour
₹100-400 INR / hour
$250-750 USD
$30-250 CAD
$15-25 USD / hour