Exploits

Blog Archive Category

the exploit blog logo
The Exploit: Penetration Testing Insights From The Frontlines

The Exploit articles categorized as Exploits

  • Why 8-Character Passwords Are No Longer Enough: Lessons from the Raxis Password Cracker

    Why 8-Character Passwords Are No Longer Enough: Lessons from the Raxis Password Cracker

    By Brad Herring With the start of 2026, the Raxis team is already busy. A new upgrade to our password-cracking system shows how quickly 8-character passwords can be cracked. January 9, 2026
  • Cross-Site Scripting (XSS): Cookie Theft - Advanced Payloads

    Cross-Site Scripting (XSS): Cookie Theft – Advanced Payloads

    By Raxis Research Team We reached into our vaults to bring you the final video in our cross-site scripting (XSS) series. Learn about cookie theft, website defacement, and CSRF attacks. December 18, 2025
  • Data Theft Exploit: DNS Exfiltration Setup

    Data Theft Exploit Part 1: DNS Exfiltration Setup

    By Jason Taylor Raxis Lead Penetration Tester Jason Taylor’s in-depth tutorial explains setting up a server for DNS exfiltration. Check back next month to run the attack. December 16, 2025
  • Salesforce Compromise: What You Need to Know

    Salesforce Compromise: What You Need to Know

    By Jason Taylor The FBI has released information to help organizations that are affected by recent attacks against Salesforce. Raxis’ Jason Taylor sums up next steps here. October 15, 2025
  • Cool Tools Series: Kerbrute

    Cool Tools Series: Kerbrute

    By Andrew Trexler Raxis Principal Penetration Tester Andrew Trexler walks through the many uses of Kerbrute from user enumeration to brute-forcing and password spraying. October 7, 2025
  • Lateral Movement: From Beachhead to Breach

    Lateral Movement: From Beachhead to Breach

    By Nate Jernigan Raxis Senior Penetration Tester Nate Jernigan discusses lateral movement in penetration testing and the methods and tools he uses when performing these attacks. September 23, 2025