How-to guides
Step-by-step guides for common tasks in XBOW Console.
Articles in this section
-
Select the right XBOW assessment type for your security testing needs. Choose comprehensive, targeted, or retest assessments.
-
Configure test account credentials for XBOW penetration testing. Supported methods include username/password, magic links, MFA with TOTP, and bearer tokens.
-
Upload source code, documentation, and configuration files to provide XBOW with context that improves testing accuracy and findings.
-
Configure your firewall and WAF to allow XBOW penetration testing. Learn about IP allowlisting, custom headers, and WAF bypass options.
-
Align the test execution parameters with your server and security team requirements.
-
Troubleshoot XBOW configuration check issues including target validation, credential verification, and scope discovery problems.
-
Start your XBOW security assessment after configuring scope and reviewing test parameters.
-
Explore XBOW security findings, vulnerability classifications, and remediate the most severe vulnerabilities.