Raxis Penetration testing, security vulnerability detection, and incident response services to help you meet compliance and stay safe online.

Raxis provides penetration testing, security products, and risk assessments to help keep your organization as secure as possible.

Labor Day is a reminder of the people behind the work - the teams who build, protect, support, solve, and keep things mo...
09/07/2026

Labor Day is a reminder of the people behind the work - the teams who build, protect, support, solve, and keep things moving.

Today, we recognize the dedication and commitment that power every organization.

Wishing our clients, partners, and team a safe and restful Labor Day.

Tailored Testing for Your SOC 2 ScopeNo two SOC 2 environments are alike - your testing shouldn’t be either.Raxis custom...
09/04/2026

Tailored Testing for Your SOC 2 Scope

No two SOC 2 environments are alike - your testing shouldn’t be either.

Raxis customizes every engagement around your system boundaries and risk profile, whether you need external network, internal cloud, or application pe*******on testing.

Our experts define scope with your team, execute authorized simulations safely, and deliver results that fit your SOC 2 objectives.

From scoping to retesting, every step is transparent, traceable, and audit-ready.
Custom testing. Clear reporting. Total confidence.

🔗 Connect with Raxis' SOC 2 experts → raxis.com

*******onTesting

Your AI accepts attacker-controlled input every day. Are you testing what attackers can make it do?Natural language chan...
09/04/2026

Your AI accepts attacker-controlled input every day. Are you testing what attackers can make it do?

Natural language changes the security equation.

A malicious prompt can target model behavior, system instructions, connected data, retrieval pipelines, and tools the AI is authorized to use. Those are attack paths traditional web application and API pe*******on testing were never designed to fully evaluate.

That is why Raxis treats AI security as its own offensive security discipline.

Our AI & LLM pe*******on testing examines how the model behaves under adversarial pressure and how that behavior interacts with the systems, data, and applications around it.

If AI is already part of your environment, it should already be part of your pe*******on testing strategy.

🔗 Contact Raxis today to put your AI security to the test: raxis.com

*******onTesting

Not every pe*******on testing company should be testing your OT environment.In Operational Technology, the wrong testing...
09/03/2026

Not every pe*******on testing company should be testing your OT environment.

In Operational Technology, the wrong testing approach can disrupt more than a server. SCADA systems, PLCs, HMIs, and other industrial technology often require careful decisions about what can be tested actively, what should be assessed passively, and what needs to be handled manually.

That changes what organizations should look for in a pe*******on testing partner.

In the latest installment of Raxis' “Choosing a Pe*******on Testing Company” series, Brad Herring breaks down what separates experienced OT pentesters from teams treating OT like another IT subnet - including the questions you should ask before giving a vendor access to your environment.

If OT is in your pentesting scope, know what to look for before you choose who tests it.

🔗 Read the full blog: https://raxis.com/blog/choosing-a-pe*******on-testing-company-operational-technology/

*******onTesting

Raxis is often brought in to retest environments already tested by other firms.We still find:- High-impact vulnerabiliti...
09/02/2026

Raxis is often brought in to retest environments already tested by other firms.

We still find:
- High-impact vulnerabilities
- Auth flaws
- Exposed APIs
- Cloud misconfigurations
- Chained exploits

Raxis doesn’t just test. We reveal the reality of your security posture.

🔗 raxis.com

Physical Security and Cybersecurity Go Hand in HandThe line between physical and digital security has disappeared.One su...
09/02/2026

Physical Security and Cybersecurity Go Hand in Hand

The line between physical and digital security has disappeared.

One successful facility breach can quickly become credential theft, device implantation, network access, or a much larger cybersecurity incident.

Raxis Physical Pe*******on Testing demonstrates how attackers could move from your building into your environment, helping you strengthen the controls that protect both.

Protecting your network starts with protecting your facility.

Learn more: Raxis.com

Why Collaboration MattersRed Team may find gaps.Blue Team may respond too slowly.But when both work together, your organ...
09/01/2026

Why Collaboration Matters

Red Team may find gaps.
Blue Team may respond too slowly.
But when both work together, your organization evolves.

Raxis' Purple Team engagements bridge the gap - ensuring knowledge flows both ways and your entire security program grows stronger from every test.

When offense and defense collaborate, everyone wins.
🔗 Learn more → raxis.com

When ransomware hits a streaming platform or ticketing system, it doesn’t just pause production - it pauses revenue.Medi...
08/28/2026

When ransomware hits a streaming platform or ticketing system, it doesn’t just pause production - it pauses revenue.

Media and entertainment systems are increasingly complex, integrating content delivery, payment systems, and remote production tools.

That’s why Raxis’ testing simulates how attackers exploit those connections - through phishing, API misuse, supply chain gaps, or outdated backend logic.

And we don’t stop at detection. We help you fix what matters and validate that it stays fixed.

📍 Let’s talk about full-path testing for your digital environment: raxis.com

*******onTesting

If you run self-hosted SharePoint, patching CVE-2026-50522 may not be enough.The critical 9.8 vulnerability is already b...
08/27/2026

If you run self-hosted SharePoint, patching CVE-2026-50522 may not be enough.

The critical 9.8 vulnerability is already being exploited in the wild. Raxis investigated the potential exposure and identified roughly 3,300 self-hosted SharePoint installations among nearly 30,000 public-facing portals.

But the bigger concern is what can happen after exploitation.

An attacker who compromised a server before it was patched could have obtained its IIS machine keys. Applying Microsoft's July update closes the vulnerability, but it does not rotate those keys - potentially leaving the attacker with a way back in.

Raxis' Brian Tant breaks down what our team found and why organizations running self-hosted SharePoint should patch, rotate IIS machine keys, and hunt for evidence of compromise.

Read the full findings & for next steps: https://raxis.com/blog/we-went-on-a-sharepoint-expedition-and-heres-what-we-found/

AI-augmented pentesting = more than scans.Raxis combines manual expertise with AI simulations to reveal risks automation...
08/27/2026

AI-augmented pentesting = more than scans.

Raxis combines manual expertise with AI simulations to reveal risks automation misses, including password weaknesses with GPU-driven password cracking when we uncover hashes.

See the full picture, not partial alerts.

🔗 Raxis.com

*******onTesting

Address

2870 Peachtree Road #915-8924
Atlanta, GA
30305

Alerts

Be the first to know and let us send you an email when Raxis posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Shortcuts

Share