Password Length: More than Just a Question of Compliance
Password Length: More than Just a Question of Compliance

Password length requirements are a key part of password security, but, with PCI, NIST, OWASP,[…]

SOC 2 Compliance
SOC 2 Compliance: Is it Right for Your Organization?

SOC 2 is a compliance and privacy standard that outlines how to manage customer data[…]

Raxis Achieves SOC 2 Type 2 Compliance
Raxis Achieves SOC 2 Type 2 Compliance

We are thrilled to announce that Raxis has successfully achieved SOC 2 Type 2 compliance,[…]

You See a Wireless Mouse. We see an easy way in.
What to Expect with a Raxis Wireless Penetration Test

Wireless attacks are typically low-risk, high-reward opportunities that don’t often require direct interaction. See more[…]

Simultaneous Sessions
Why We Take Simultaneous Sessions Seriously

Raxis Lead Penetration Tester Matt Dunn explains why you simultaneous sessions is a significant finding[…]

CIS vs. NIST
CIS vs. NIST: Understanding Cybersecurity Standards and Frameworks

The CIS 18 and NIST 800-53 are important gap analysis tools security professionals use to[…]

Why they're not the same: Vulnerability Scans and Pentests
Chained Attacks and How a Scan Can Leave You Vulnerable

Vulnerability scans are useful tools for protecting your network. Find out why you shouldn’t rely[…]

Metasploit Module: Azure AD Login Scanner
New Metasploit Module: Azure AD Login Scanner

Raxis’ Matt Dunn has published another Metasploit module, this one describing a vulnerability in Azure’s[…]

Introduction to Cross-Site Scripting
Introduction to Cross-Site Scripting

This video covers the basics of cross-site scripting, including reflected, stored, and DOM-based XSS as[…]

Nagios XI Stored Cross-Site Scripting (XSS): CVE-2021-38156
Nagios XI Stored Cross-Site Scripting (XSS): CVE-2021-38156

Nagios is open-source network and system monitoring software. Raxis’ Matt Dunn has discovered a cross-site[…]

Cookie Jar
Keep Your Cookies in the Cookie Jar: HttpOnly and Secure Flags

How can cookies be used against you? And how do you keep that from happening?[…]

Scottie in 2004 on Navarre Beach in the wake of the Hurricane Ivan
Hurricane Ida: Limiting the Damage

Lead penetration tester Scottie Cole is a Gulf Coast resident and former first responder. Read[…]

1 2 3 5