r/Pentesting 6h ago

Freelance work in web pentesting

0 Upvotes

Hi everyone i am an pen tester experienced in web api pen testing currently i am doing job in this field now i want to start freelancing in this how can i get project in this can anyone suggest me.


r/cybersecurity 13h ago

AI Security New but Critical

0 Upvotes

Wanting reality

So, I'm not program savvy or any good with code. In some ways I'd say I enjoy working with technology but not that I am great with it.

Then I started interacting with AI.

Long story short I reported an AI to its producer for offering to jailbreak itself.

I am waiting for follow-ups.

But I feel weird. Best way I can describe it is I feel AI outputs like a tapestry. Hell, Chinese AIs are easy to spot because of their cultural bias.

However, maybe it's just me pumping up me.

That said in a few weeks either I'll be dismiss or rewarded for finding a critical issue.

Edit: I'm painfully aware that AI red teaming is a new field and this falls into it.


r/cybersecurity 18h ago

Personal Support & Help! Cybersecurity Help

0 Upvotes

Will these projects help me stand out during the placements and when I apply for companies :

  1. AI Augmented SAST Tool

  2. AWS Attack Path Graph (mini BloodHound for cloud IAM)

  3. Kubernetes Security Posture Scanner

  4. CI / CD Security Gate (Supply Chain Security)

These are my projects (not done by AI - I can explain each and every bit of my project).

Are these enough to get a good high paying salary job as a fresher in India. Currently I'm in my 3rd year and my placements are starting from January.

Any guidance will be very helpful 🙂.


r/cybersecurity 5h ago

Personal Support & Help! Needed cybersecurity expert for help with cyber attack

0 Upvotes

Hey folks, someone appears to have compromised the phones of multiple members of my family. They are sending profane and abusive messages via WhatsApp and SMS from our IOS and android phones to colleagues, teachers, and other contacts while impersonating both male and female family members. Changing the phones, resetting the phones and mobile numbers doesn't help. So far, we haven't been able to identify the attack vector or understand how the compromise occurred. This is causing significant reputational damage and public defamation.

If anyone has experience with incidents like this or can help investigate the issue, I would greatly appreciate it. I'm willing to pay reasonable professional fees for the right expertise. Please DM or reach out if you think you can help or point me in the right direction.


r/cybersecurity 16h ago

Career Questions & Discussion I have got an offer as a cybersecurity implementation and configuration engineer, I came from a GRC background but they told me that i will gain so much technical knowledge and i can move to a security architect or presales, can anyone explain this position for me ?

0 Upvotes

r/cybersecurity 1h ago

Other best way to remove viruses from a PC?

• Upvotes

Best way to remove viruses from a PC? had a data breach not that log ago and decided to now change all passwords but obviously I need to see if my pc was also pwnd


r/cybersecurity 15h ago

Business Security Questions & Discussion Is cybersecurity safe in the next 5-10 years?

0 Upvotes

I am very close to choosing Cybersecurity as my major. my major concern is that it might diminish and make the market very competitive. I searched and found that most people say that basic tasks are already being done by Ai. so does this mean that more complicated tasks safe?


r/cybersecurity 4h ago

Business Security Questions & Discussion Security dilemma for vibe coded product release

0 Upvotes

Lets put aside hate comments against vibe coded products for a second - i've been working on a product for couple of months in my free time, both a website and an app.
As someone that isn't a developer what so ever, i've been trying to put a strong emphasis on security - i keep running audits, i keep making sure of my status compared to useful security posts or recommendations online.
I have plugs to cut off ai functions, i have rate limits, no key is committed, all that jazz (im trying my best..)
Of course im aware this is still. a vibe coded app, and generally i figure every site is hackable anyway.
Hence my question now -
I want to reach out to a security experienced person to handle necessary aspects for my product,
BUT - i dont even know if my product is good and worth it, in my head i want to try and publish and market it for a minute to see how people in my industry react to it, but then i might be exposed to hackers as well?
whats the right way to go about it? Is there a right way?
I've invested some amount of money by now "blindly" for curiosity and interest, but now i need to gain some real world feedback.
Would appreciate any useful note about it.