Malware Removal & Server Hardening
Budget / SalaryHourly project
TypeFreelance project
LocationRemote
Posted1 hour ago
A recent scan showed a malicious code injection on one of the key pages of my custom-built PHP application, hosted on a dedicated AWS EC2 server.
We cleaned the malware and found and patched the loophole. But then it came back and another loophole surfaced.
I need an experienced security specialist to scan the entire server for malware and set up ongoing monitoring so this doesn’t resurface.
Scope of work
• Remove every trace of the current infection from both codebase and filesystem.
• Audit the full stack, server configuration, and access logs to pinpoint the exact attack vector.
• Patch or re-architect the vulnerable component you identify, then harden the server (SSH, firewall, file permissions, intrusion detection, etc.).
• Deploy continuous monitoring and alerting so future anomalies are flagged immediately.
• Provide a concise report explaining findings, actions taken, and recommended next steps.
Acceptance criteria
Clean security scans, no reinfection after 14 days of monitoring, and clear documentation delivered.
Direct knowledge of LAMP security best practices, AWS security best practices, Debian server hardening, and malware forensics will be essential.
We cleaned the malware and found and patched the loophole. But then it came back and another loophole surfaced.
I need an experienced security specialist to scan the entire server for malware and set up ongoing monitoring so this doesn’t resurface.
Scope of work
• Remove every trace of the current infection from both codebase and filesystem.
• Audit the full stack, server configuration, and access logs to pinpoint the exact attack vector.
• Patch or re-architect the vulnerable component you identify, then harden the server (SSH, firewall, file permissions, intrusion detection, etc.).
• Deploy continuous monitoring and alerting so future anomalies are flagged immediately.
• Provide a concise report explaining findings, actions taken, and recommended next steps.
Acceptance criteria
Clean security scans, no reinfection after 14 days of monitoring, and clear documentation delivered.
Direct knowledge of LAMP security best practices, AWS security best practices, Debian server hardening, and malware forensics will be essential.
Apply on Freelancer →
Project sourced from Freelancer.com. Applications happen directly on the original platform — we never collect your data.