Author: Matt Schmidt Back to HomeHome Archives for Matt Schmidt Select Category API Penetration TestAWSAzureBest PracticeCertificationsCloudCloud SecurityCompany NewsComparisionCore ValuesCostCurrent EventsDeliverablesEducationExternal Penetration TestFirewall Configuration ReviewGDPR ComplianceHIPAAHITRUSTHost Compliance AuditIncident ResponseInternal Penetration TestIoT Penetration TestingMobile Application Penetration TestingNIST/DFARS ComplianceOracle CloudOSINTPassword AuditPCI CompliancePenetration TestPhysical Penetration TestProblemsQuick TipsRansomwareRed TeamRegulatorySecure SLCSecurity Awareness TrainingSecurity ConsultingSensitive Data MappingSmall BusinessSocial EngineeringTabletop ExercisesUncategorizedVulnerability ManagementVulnerability WalkthroughWeb Application Penetration TestWireless Penetration Test Education External Penetration Test OSINT Problems DNS Zone Transfers: A Classic Risk Still Overlooked What are DNS Zone Transfers? While DNS zone transfers may seem like a relic of the past, they remain a … By: Matt Schmidt July 7, 2025 3 Min Read Certifications Penetration Test Security Consulting Certification Review – Tackling the OSCP Following two failed attempts, I persevered and obtained the coveted OSCP on the third time around. The overall journey took … By: Matt Schmidt September 12, 2023 5 Min Read Education Internal Penetration Test Password Audit Penetration Test Building An Advanced Password Cracking Machine Earlier this year, Triaxiom was set on building a new password cracking machine which would be a more advanced iteration … By: Matt Schmidt November 8, 2022 3 Min Read Education XMPie uStore Vulnerabilities Discovered Recently during an External Penetration Test, Triaxiom discovered several flaws/vulnerabilities within a commercial-off-the-shelf (COTS) eCommerce platform called XMPie uStore. In … By: Matt Schmidt February 2, 2022 5 Min Read Web Application Penetration Test Web Application Weakness Trends These days, it is quickly becoming a necessity that all companies have public facing web applications for various purposes. Additionally, … By: Matt Schmidt August 25, 2021 3 Min Read Education CVEs and Responsible Disclosures: What are they? CVEs and responsible disclosures are both important items and steps to securing software and making the Internet a more secure … By: Matt Schmidt May 13, 2021 2 Min Read Education Mobile Application Penetration Testing Android Penetration Testing After Nougat Since the introduction of Android Nougat, users no longer have the ability to add user or admin supplied CA certs … By: Matt Schmidt February 24, 2021 2 Min Read Load more
Education External Penetration Test OSINT Problems DNS Zone Transfers: A Classic Risk Still Overlooked What are DNS Zone Transfers? While DNS zone transfers may seem like a relic of the past, they remain a … By: Matt Schmidt July 7, 2025 3 Min Read
Certifications Penetration Test Security Consulting Certification Review – Tackling the OSCP Following two failed attempts, I persevered and obtained the coveted OSCP on the third time around. The overall journey took … By: Matt Schmidt September 12, 2023 5 Min Read
Education Internal Penetration Test Password Audit Penetration Test Building An Advanced Password Cracking Machine Earlier this year, Triaxiom was set on building a new password cracking machine which would be a more advanced iteration … By: Matt Schmidt November 8, 2022 3 Min Read
Education XMPie uStore Vulnerabilities Discovered Recently during an External Penetration Test, Triaxiom discovered several flaws/vulnerabilities within a commercial-off-the-shelf (COTS) eCommerce platform called XMPie uStore. In … By: Matt Schmidt February 2, 2022 5 Min Read
Web Application Penetration Test Web Application Weakness Trends These days, it is quickly becoming a necessity that all companies have public facing web applications for various purposes. Additionally, … By: Matt Schmidt August 25, 2021 3 Min Read
Education CVEs and Responsible Disclosures: What are they? CVEs and responsible disclosures are both important items and steps to securing software and making the Internet a more secure … By: Matt Schmidt May 13, 2021 2 Min Read
Education Mobile Application Penetration Testing Android Penetration Testing After Nougat Since the introduction of Android Nougat, users no longer have the ability to add user or admin supplied CA certs … By: Matt Schmidt February 24, 2021 2 Min Read