The Exploit articles categorized as Exploits
-

Cross-Site Scripting (XSS): Cookie Theft – Advanced Payloads
By Raxis Research Team We reached into our vaults to bring you the final video in our cross-site scripting (XSS) series. Learn about cookie theft, website defacement, and CSRF attacks. December 18, 2025 -

Data Theft Exploit Part 1: DNS Exfiltration Setup
By Jason Taylor Raxis Lead Penetration Tester Jason Taylor’s in-depth tutorial explains setting up a server for DNS exfiltration. Check back next month to run the attack. December 16, 2025 -

Salesforce Compromise: What You Need to Know
By Jason Taylor The FBI has released information to help organizations that are affected by recent attacks against Salesforce. Raxis’ Jason Taylor sums up next steps here. October 15, 2025 -

Cool Tools Series: Kerbrute
By Andrew Trexler Raxis Principal Penetration Tester Andrew Trexler walks through the many uses of Kerbrute from user enumeration to brute-forcing and password spraying. October 7, 2025 -

Lateral Movement: From Beachhead to Breach
By Nate Jernigan Raxis Senior Penetration Tester Nate Jernigan discusses lateral movement in penetration testing and the methods and tools he uses when performing these attacks. September 23, 2025 -

Dangers of Storing Sensitive Data in Web Storage: 5 Real Attack Scenarios
By Ryan Chaplin Lead Penetration Tester Ryan Chaplin walks us through 5 real-world attack scenarios used in real-world penetration tests by Raxis. August 26, 2025