How To

Blog Archive Category

the exploit blog logo
The Exploit: Penetration Testing Insights From The Frontlines

The Exploit articles categorized as How To

  • Cross-Site Scripting (XSS): Cookie Theft - Advanced Payloads

    Cross-Site Scripting (XSS): Cookie Theft – Advanced Payloads

    By Raxis Research Team We reached into our vaults to bring you the final video in our cross-site scripting (XSS) series. Learn about cookie theft, website defacement, and CSRF attacks. December 18, 2025
  • Data Theft Exploit: DNS Exfiltration Setup

    Data Theft Exploit Part 1: DNS Exfiltration Setup

    By Jason Taylor Raxis Lead Penetration Tester Jason Taylor’s in-depth tutorial explains setting up a server for DNS exfiltration. Check back next month to run the attack. December 16, 2025
  • PSE & Red Team Series: Badge Cloning

    PSE & Red Team Series: Badge Cloning

    By Nathan Anderson Lead Penetration Tester Nathan Anderson is back with more PSE and red team advice, this time looking into three tools he uses to clone badges and gain access. October 21, 2025
  • Lateral Movement: From Beachhead to Breach

    Lateral Movement: From Beachhead to Breach

    By Nate Jernigan Raxis Senior Penetration Tester Nate Jernigan discusses lateral movement in penetration testing and the methods and tools he uses when performing these attacks. September 23, 2025
  • Cool Tools Series: Croc

    Cool Tools Series: Croc for Secure Data Exfiltration

    By Nathan Anderson Lead Penetration Tester Nathan Anderson provides tips on using croc for secure data exfiltration just like he does on red team engagements. September 9, 2025
  • PSE & Red Team Series: The Power of Grip to Enhance the Under-Door Tool

    PSE & Red Team Series: The Power of Grip to Enhance the Under-Door Tool

    By Brad Herring In this next post in our PSE and Red Team Series, Brad Herring explains how to use gaffer’s tape or heat-shrink tubing to make an under-door tool easier to use. August 12, 2025