← Live feed

Cyber Threat Intelligence Analyst - Phishing Kit & Reverse Proxy Analysis

Budget: $2500.0 FIXED / ⭐ 0.00 (0) Kazakhstan

security-analysis, information-security, penetration-testing, network-security, ethical-hacking

Gewenste kwalificaties

  • Ervaring: Gevorderd
We are seeking an experienced Threat Intelligence / Application Security Analyst to perform defensive analysis and reverse engineering on a newly discovered Adversary-in-the-Middle (AitM) phishing framework. This project involves dissecting the mechanics of an external phishing kit targeting our brand/infrastructure to analyze traffic routing, session handling logic, dynamic content injection, and origin server indicators for threat intelligence reporting and mitigation. Key Responsibilities: - Analyze intercepted server/proxy configurations, scripts, and routing logic from the kit. - Deobfuscate client-side JavaScript and inspect dynamic HTTP request/response rewriting routines. - Document how session handling, header manipulation, and credential/cookie extraction are executed within the kit. - Deliver a detailed technical breakdown report outlining threat indicators (IOCs), structural architecture, and recommended defensive rules (WAF/YARA/SIGMA). Required Qualifications: - Deep HTTP Protocol Expertise: Mastery of request/response headers, TLS/SSL handling, cookies/session mechanics, and WebAuthn/FIDO2 interaction behaviors. - Traffic & Proxy Analysis: Advanced proficiency with tools such as mitmproxy, Burp Suite, Wireshark, and custom traffic analysis scripts. - Code Analysis & Deobfuscation: Strong skills in reading and deobfuscating JavaScript, HTML, and back-end logic written in Python, Go, or Node.js. - Threat Intelligence Experience: Proven track record in threat research, reverse engineering web-based threat infrastructure, and compiling technical CTI reports.
Openen op Upwork

AI proposal draft

Generate a short cover letter for this job. Edit before sending.

Sign in to generate an AI proposal draft.

Inloggen