Getting a Foothold on HackTheBox Machine Visual

January 29, 2024 | Mason Ferrell Now, more than ever, the digital world is filled with free resources to practice system security. One great platform for practicing offensive security skills is HackTheBox. Besides educational materials and professional networking features, HackTheBox has hundreds of vulnerable machines which can be attacked. The typical flow for one of […]

Black Box Cybersecurity

A closed black box on a wood slat floor.

Examine the mysteries of cybersecurity layoffs and the black box dilemma. Discover the industry’s struggle to communicate its value, the consequences of relying on fear as a motivator, and the benefits of building transparent bridges with non-technical leadership for a positive cybersecurity engagement.

Why Work with Exfil Certified?

Two giant stone hands hold a golden bridge.

Exfil Certified offers a modern and dynamic cybersecurity certification, bridging the gap between hacking and securing. Our unique approach emphasizes business acumen, dedicated mentoring, and effective communication to produce the next generation of cybersecurity professionals.

Principles

A rough, wooden sign with the word "Trail" in all capital letters and an arrow pointing to the left.

Crafting problem-solving strategies in security and programming, Mason Ferrell shares principles for effective solutions and insightful testing methods.

What Engineers Should Know About Sales

No matter what role you play in a company, understanding the needs and nuances of sales is extremely important. It is even more important for engineers that work for a company that sells engineering services or products.

Reflections on DEF CON 2023

DEF CON logo on a white background with a black border

In what has become an annual and much-anticipated event at Exfil, our team again went on its yearly pilgrimage to the DEF CON security conference in Las Vegas. As always it was a non-stop whirlwind running around trying to catch presentations, meet up with potential clients, do some team building, and grab delicious food. Now that we are back at work, I thought it might be fun to share some personal observations from DEF CON 2023.

Why Exfil Security Attends DEF CON

DEF CON logo over black background

Exfil Security participates in DEF CON, the annual security conference that brings together security professionals, hackers, researchers, and enthusiasts from around the globe. Our attendance is driven by a commitment to staying at the forefront of cybersecurity knowledge and innovation. By being part of DEF CON, we gain valuable insights into the latest cybersecurity trends, vulnerabilities, and defense strategies. Our dedication to DEF CON reflects our desire to deliver top-tier cybersecurity services to our clients and continually improve our expertise in the field.

Working With Us

One mountain climber helps another up onto a mountain top.

If you were about to embark on an adventurous trek into some unfamiliar territory, wouldn’t you want to have a seasoned guide at your side, someone who knows the terrain and can help you avoid threats on the way to your destination?

Jailbreaking GPT-4: What has Changed?

ChatGPT logo behind bent jail cell bars

Since the release of ChatGPT in November of 2022, a major focus for its users has been jailbreak prompts that allow users to use ChatGPT freely without constraints. From a security perspective, jailbreak prompts have allowed penetration testers to bypass restrictions and receive valuable advice from ChatGPT on various security topics. That is why when OpenAI released the GPT-4 model of ChatGPT in March of 2023, many hoped it would be as easy to jailbreak as the GPT-3.5 model was. Unfortunately, it does not appear that this was the case.

Learning to Hack through Capture the Flag

Red letters CTF next to a lock on a computer screen background

How do you learn to hack? How can this be done legally? These are the questions I asked myself growing up knowing I wanted to go into Computer Science and more specifically, cybersecurity. Going into college, there were some basic cybersecurity courses that weren’t available until Junior or Senior year, but I wanted to get started right away.