Cyber Threat Intelligence Analyst - Phishing Kit & Reverse Proxy Analysis
Budżet: $2500.0
FIXED /
⭐ 0.00 (0)
Kazakhstan
security-analysis, information-security, penetration-testing, network-security, ethical-hacking
Preferowane kwalifikacje
- Doświadczenie: Średniozaawansowany
We are seeking an experienced Threat Intelligence / Application Security Analyst to perform defensive analysis and reverse engineering on a newly discovered Adversary-in-the-Middle (AitM) phishing framework.
This project involves dissecting the mechanics of an external phishing kit targeting our brand/infrastructure to analyze traffic routing, session handling logic, dynamic content injection, and origin server indicators for threat intelligence reporting and mitigation.
Key Responsibilities:
- Analyze intercepted server/proxy configurations, scripts, and routing logic from the kit.
- Deobfuscate client-side JavaScript and inspect dynamic HTTP request/response rewriting routines.
- Document how session handling, header manipulation, and credential/cookie extraction are executed within the kit.
- Deliver a detailed technical breakdown report outlining threat indicators (IOCs), structural architecture, and recommended defensive rules (WAF/YARA/SIGMA).
Required Qualifications:
- Deep HTTP Protocol Expertise: Mastery of request/response headers, TLS/SSL handling, cookies/session mechanics, and WebAuthn/FIDO2 interaction behaviors.
- Traffic & Proxy Analysis: Advanced proficiency with tools such as mitmproxy, Burp Suite, Wireshark, and custom traffic analysis scripts.
- Code Analysis & Deobfuscation: Strong skills in reading and deobfuscating JavaScript, HTML, and back-end logic written in Python, Go, or Node.js.
- Threat Intelligence Experience: Proven track record in threat research, reverse engineering web-based threat infrastructure, and compiling technical CTI reports.
Otwórz na Upwork
AI proposal draft
Generate a short cover letter for this job. Edit before sending.
Sign in to generate an AI proposal draft.
Zaloguj