Developer docs
API playgroundTry for free, no card

Search company profiles

Black Hills Information Security

Full company profile

uuid0007jh9

Namestring
Black Hills Information Security
Legal namestring
Black Hills Information Security, Inc.
Company typeenum
Private
Founded yearint
2008
Descriptiontext

Black Hills Information Security (BHIS) is a US-based, privately held offensive cybersecurity firm founded in 2008 by John Strand and headquartered in Sturgis, South Dakota. The company sells penetration testing and security validation services to enterprise organizations and high-profile individuals, spanning traditional external/internal pentesting, web application testing, continuous penetration testing (AntiSOC), AI security assessments, blue team services, blockchain security, incident response, and a managed SOC offering (ActiveSOC). Revenue is generated primarily through professional services engagements with an increasing shift toward recurring subscription revenue via AntiSOC and multi-year contracts tied to the new Fusion AI product.

The firm's technology stack centers on two proprietary platforms: Fusion AI, an agentic AI-augmented external penetration testing system that combines automated scanning, attack-chain analysis, and senior human validation at roughly one-third the cost of traditional external pentests; and AntiSOC, a continuous adversary validation platform combining automated adversary simulation, AI-augmented continuous testing, and exposure validation. BHIS also distributes free open-source tools (notably RITA via sister entity Active Countermeasures) and an incident-response card game (Backdoors & Breaches). The company does not publish pricing and operates a direct, consultative sales motion with no disclosed channel partners.

BHIS extends well beyond services into a tightly integrated ecosystem branded as the "Tribe of Companies" — Active Countermeasures, Wild West Hackin' Fest (annual Deadwood conference), Antisyphon Training, REKCAH Comics, and Backdoors & Breaches — supported by a content and community engine that includes the weekly Talkin' Bout [Infosec] News podcast, free webcasts, YouTube, a blog, Discord, LinkedIn, X, and Bluesky. The Tribe functions as a top-of-funnel flywheel for service leads while diversifying into training, events, tools, and media. The firm is privately held with no disclosed outside funding, no published revenue, and limited leadership disclosure beyond COO Christopher Cox.

Short descriptiontext

Black Hills Information Security is a US-based offensive cybersecurity firm founded in 2008, offering penetration testing, continuous validation (AntiSOC), AI security assessments, incident response, and managed SOC services to enterprise organizations and high-profile individuals, supported by a proprietary AI-augmented Fusion AI testing platform.

Operating statusenum
Operating
Ownership categoryenum
Headcount rangeband
101–250
akta.pro rankint
HeadquartersSpearfish, United States
HQ citystring
Spearfish
HQ countrystring
United States
HQ regionstring
North America
Markets served

Serves global market

Offices1 record

Each record includes

City, Country, Type, Description, Source

Keyword5 values
penetration testing services, continuous adversary validation, web application testing, AI security assessments, incident response services
Industry7 codes
1Penetration Testing & Red Teaming
CodeBPAKADAEPrimaryYes
2Vulnerability Management & Penetration Testing Services
CodeBPAEADADPrimaryNo
3Model Security Testing & Red Teaming (adversarial ML, jailbreaks)
CodeHDAAAKACPrimaryNo
4Vulnerability Assessment & Scanning
CodeHDADAHAAPrimaryNo
5Security Testing Tooling (SAST/DAST for smart contracts, fuzzing)
CodeFSAPAJAKPrimaryNo
6Network Security Managed Services (Firewall/IDS/IPS/SASE)
CodeBPAEADAGPrimaryNo
7Cybersecurity Technical Skills (Security Engineering, SOC, Pen Testing)
CodeEDABAFAFPrimaryNo
NAICS code2 codes
  • Testing Laboratories and Services54138
  • Testing Laboratories and Services541380
SIC code1 code
  • Services-Testing Laboratories8734
Product category
Cybersecurity Services
GTM motion1 record

Each record includes

Type, Description, Source

Revenue model3 records
1Penetration Testing Services
TypeProfessional Services
Description

Professional services revenue generated from traditional and continuous penetration testing engagements. Pricing varies by scope, complexity, and engagement type. Includes external/internal network testing, web application testing, red team operations, and specialized assessments.

blackhillsinfosec.com
2Continuous Security Monitoring (AntiSOC)
TypeSubscription Recurring
Description

Recurring subscription-based revenue from continuous penetration testing and threat exposure management services. Provides ongoing validation of security controls throughout the year.

blackhillsinfosec.com
3AI Security Assessments
TypeProfessional Services
Description

Specialized assessments for organizations deploying AI-powered platforms, including red teaming against adversarial attacks like prompt injection, model extraction, and data poisoning.

blackhillsinfosec.com
Marketing channels9 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels1 record

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components4 values
Personnel, Technology or R&D, Marketing or Sales, Operations
Pricing details1 tier
1Fusion AI External Pentest - approximately 1/3 cost of traditional pentest
ModelHybridBilling cadenceMulti-year contract
Notes

Fusion AI runs at approximately one-third the cost of a traditional external pentest, with a human tester signing off on every finding.

blackhillsinfosec.com
GTM typeB2B
B2B
Offering typeServices
Services
Brand1 of 5 records shown
1AntiSOC
Description

Continuous adversary validation platform combining automated adversary simulation, AI-augmented continuous penetration testing, and exposure validation

blackhillsinfosec.com
+4 more records
Core offering1 text field

Black Hills Information Security provides offensive and continuous security testing services to organizations, including traditional and AI-augmented (Fusion) penetration testing, continuous adversary validation (AntiSOC), web application testing, AI security assessments, incident response, managed SOC (ActiveSOC), blue team, blockchain, and high-profile risk assessments. Its proprietary Fusion AI platform combines autonomous agents with senior human tester sign-off on every finding to deliver external penetration testing at approximately one-third the cost of traditional engagements.

Differentiator
Functional benefit
Problem solved
Quantifiable outcome1 of 2 values shown
  • Fusion AI runs at approximately one-third the cost of traditional external pentests
+1 more record
Product overview1 text field

Black Hills Information Security (BHIS) offers a portfolio of cybersecurity services led by penetration testing offerings, including Traditional Penetration Testing, the AI-augmented Fusion Penetration Testing service, and AntiSOC for continuous adversary validation. The company provides complementary services including Web Application Testing, ActiveSOC managed services, AI Security Assessments, Incident Response, Blue Team Services, Blockchain Security, and High-Profile Risk Assessments. BHIS also maintains educational and community-focused brands including Antisyphon Training, the Wild West Hackin' Fest conference, and free resources like the Backdoors & Breaches card game and PROMPT# zine. The company takes an AI-positive approach to security testing, using AI to augment rather than replace human testers.

Product and service1 record
1Traditional Penetration Testing
Scale indicator3 records

Each record includes

Type, Value, Description, Source

Partnership5 partners
Strategic tierCoreTypeStrategic or Co-development Partner
Description

Part of the BHIS Tribe of Companies. Active Countermeasures provides free security tools including AC-Hunter and RITA (Realtime Intelligence Threat Analysis). Deep operational and strategic integration with BHIS security testing services.

Strategic tierCoreTypeStrategic or Co-development Partner
Description

Part of the BHIS Tribe of Companies. An annual hands-on cybersecurity conference held in Deadwood, South Dakota. Provides training, talks, and networking opportunities for security professionals, aligned with BHIS's educational mission.

Strategic tierCoreTypeStrategic or Co-development Partner
Description

Part of the BHIS Tribe of Companies. Training organization providing cybersecurity education and professional development. Hosts the AI Security Summit and other training events.

Strategic tierCoreTypeStrategic or Co-development Partner
Description

Part of the BHIS Tribe of Companies. An incident response card game created by BHIS to help organizations conduct IR tabletop exercises and learn attack tactics, tools, and methods.

5REKCAH Comics
Strategic tierMinorTypeStrategic or Co-development Partner
Description

Part of the BHIS Tribe of Companies. Security-themed comic content for the cybersecurity community.

blackhillsinfosec.com
Recent move6 records

Each record includes

Date, Type, Title, Description, Source

Expansion highlight5 records

Each record includes

Type, Description

Peers10 records
TypeDirect peer
Description

Offensive security firm offering penetration testing, red team, and attack surface management services. Closely comparable in scope and boutique scale, with similar emphasis on continuous validation.

TypeDirect peer
Description

Global cybersecurity consulting firm with a large dedicated penetration testing practice across infrastructure, web, and cloud. Directly comparable to BHIS as a professional-services pentest provider, though significantly larger and UK-headquartered.

TypeBroad incumbent
Description

Endpoint security leader that has expanded into exposure management, ASM, and offensive security testing. Comparable as a competitor for adjacent services buyers, with much larger platform scale and enterprise sales motion.

TypeDirect peer
Description

Cybersecurity advisory firm with substantial penetration testing and compliance services practice. Comparable to BHIS in offering breadth across technical testing and advisory, though larger and more compliance-focused.

TypeDirect peer
Description

Offensive security consultancy offering penetration testing, red teaming, and incident response. Comparable boutique practitioner-led model, similar community-driven brand, and overlapping customer base of enterprise buyers.

TypeDirect peer
Description

Pentesting and attack surface management firm with a strong continuous/managed testing offering (NetSPI Resolve). Highly comparable to BHIS on traditional pentesting and on the continuous-testing subscription model embodied by AntiSOC.

TypeBroad incumbent
Description

Large incident response and security testing firm now part of Google Cloud, with deep penetration testing and red team offerings. Represents the scaled incumbent competing for enterprise IR and offensive security engagements.

TypeBroad incumbent
Description

Security platform vendor (Metasploit owner) offering vulnerability management, ASM, and managed testing services. Comparable in adjacent vulnerability testing categories, with broader portfolio and significantly larger scale.

TypeEmerging player
Description

Platform for crowdsourced and continuous penetration testing connecting enterprises to a researcher community. Comparable to BHIS's continuous testing direction but uses a crowdsourced delivery model rather than in-house practitioner teams.

TypeDirect peer
Description

Boutique offensive security firm specializing in penetration testing, red teaming, and attack surface management. Closely comparable to BHIS in offering mix, boutique scale, and practitioner-led delivery model.

Market position
Competitive moat4 records

Each record includes

Type, Details

Key risks6 records

Each record includes

Headline, Details, Source

Key highlights6 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Segment2 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile3 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
Yes
API detail
Has APIbool
No

Docs URL, Description

AI capability9 records

Each record includes

Type, Description, Source

AI maturity
App detail

Has app

Feature5 records

Each record includes

Title, Differentiator, Description, Source

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles2 records

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

Subsidiaries5 records

Each record includes

Name, Acquired on, Relationship type, Type, Business focus

No data
Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Black Hills Information Security

Cybersecurity Servicesblackhillsinfosec.com

Black Hills Information Security is a US-based offensive cybersecurity firm founded in 2008, offering penetration testing, continuous validation (AntiSOC), AI security assessments, incident response, and managed SOC services to enterprise organizations and high-profile individuals, supported by a proprietary AI-augmented Fusion AI testing platform.

What Black Hills Information Security does

Black Hills Information Security (BHIS) is a US-based, privately held offensive cybersecurity firm founded in 2008 by John Strand and headquartered in Sturgis, South Dakota. The company sells penetration testing and security validation services to enterprise organizations and high-profile individuals, spanning traditional external/internal pentesting, web application testing, continuous penetration testing (AntiSOC), AI security assessments, blue team services, blockchain security, incident response, and a managed SOC offering (ActiveSOC). Revenue is generated primarily through professional services engagements with an increasing shift toward recurring subscription revenue via AntiSOC and multi-year contracts tied to the new Fusion AI product.

The firm's technology stack centers on two proprietary platforms: Fusion AI, an agentic AI-augmented external penetration testing system that combines automated scanning, attack-chain analysis, and senior human validation at roughly one-third the cost of traditional external pentests; and AntiSOC, a continuous adversary validation platform combining automated adversary simulation, AI-augmented continuous testing, and exposure validation. BHIS also distributes free open-source tools (notably RITA via sister entity Active Countermeasures) and an incident-response card game (Backdoors & Breaches). The company does not publish pricing and operates a direct, consultative sales motion with no disclosed channel partners.

BHIS extends well beyond services into a tightly integrated ecosystem branded as the "Tribe of Companies" — Active Countermeasures, Wild West Hackin' Fest (annual Deadwood conference), Antisyphon Training, REKCAH Comics, and Backdoors & Breaches — supported by a content and community engine that includes the weekly Talkin' Bout [Infosec] News podcast, free webcasts, YouTube, a blog, Discord, LinkedIn, X, and Bluesky. The Tribe functions as a top-of-funnel flywheel for service leads while diversifying into training, events, tools, and media. The firm is privately held with no disclosed outside funding, no published revenue, and limited leadership disclosure beyond COO Christopher Cox.

Black Hills Information Security firmographics

Firmographics
Name
Black Hills Information Security
Legal name
Black Hills Information Security, Inc.
Website
https://blackhillsinfosec.com
Company type
Private
Founded year
2008
Operating status
Operating
Headcount range
101–250 employees
Short description
Black Hills Information Security is a US-based offensive cybersecurity firm founded in 2008, offering penetration testing, continuous validation (AntiSOC), AI security assessments, incident response, and managed SOC services to enterprise organizations and high-profile individuals, supported by a proprietary AI-augmented Fusion AI testing platform.
Ownership category
akta.pro rank

Black Hills Information Security industry classification

Industry
Product category
Cybersecurity Services
NAICS
Testing Laboratories and Services (54138), Testing Laboratories and Services (541380)
SIC
Services-Testing Laboratories (8734)
akta.pro primary industry
Penetration Testing & Red Teaming (BPAKADAE)
akta.pro secondary industries
Vulnerability Management & Penetration Testing Services (BPAEADAD), Model Security Testing & Red Teaming (adversarial ML, jailbreaks) (HDAAAKAC), Vulnerability Assessment & Scanning (HDADAHAA), Security Testing Tooling (SAST/DAST for smart contracts, fuzzing) (FSAPAJAK), Network Security Managed Services (Firewall/IDS/IPS/SASE) (BPAEADAG), Cybersecurity Technical Skills (Security Engineering, SOC, Pen Testing) (EDABAFAF)

Keywords

  • Penetration testing services
  • Continuous adversary validation
  • Web application testing
  • AI security assessments
  • Incident response services

Where Black Hills Information Security is headquartered

Location

Headquarters

HQ city
Spearfish
HQ country
United States
HQ region
North America

Offices1 record

Markets served

Black Hills Information Security business model

Business model
GTM type
B2B
Offering type
Services
Cost components
Personnel, Technology or R&D, Marketing or Sales, Operations

Revenue model

  1. Penetration Testing Services: Professional services revenue generated from traditional and continuous penetration testing engagements. Pricing varies by scope, complexity, and engagement type. Includes external/internal network testing, web application testing, red team operations, and specialized assessments.
  2. Continuous Security Monitoring (AntiSOC): Recurring subscription-based revenue from continuous penetration testing and threat exposure management services. Provides ongoing validation of security controls throughout the year.
  3. AI Security Assessments: Specialized assessments for organizations deploying AI-powered platforms, including red teaming against adversarial attacks like prompt injection, model extraction, and data poisoning.

Pricing tiers

ModelBillingPrice
HybridMulti-year contractFusion AI External Pentest - approximately 1/3 cost of traditional pentest

Go-to-market motion1 record

Distribution channels1 record

Marketing channels9 records

Black Hills Information Security product offering

Product offering

Core offering

Black Hills Information Security provides offensive and continuous security testing services to organizations, including traditional and AI-augmented (Fusion) penetration testing, continuous adversary validation (AntiSOC), web application testing, AI security assessments, incident response, managed SOC (ActiveSOC), blue team, blockchain, and high-profile risk assessments. Its proprietary Fusion AI platform combines autonomous agents with senior human tester sign-off on every finding to deliver external penetration testing at approximately one-third the cost of traditional engagements.

Product overview

Black Hills Information Security (BHIS) offers a portfolio of cybersecurity services led by penetration testing offerings, including Traditional Penetration Testing, the AI-augmented Fusion Penetration Testing service, and AntiSOC for continuous adversary validation. The company provides complementary services including Web Application Testing, ActiveSOC managed services, AI Security Assessments, Incident Response, Blue Team Services, Blockchain Security, and High-Profile Risk Assessments. BHIS also maintains educational and community-focused brands including Antisyphon Training, the Wild West Hackin' Fest conference, and free resources like the Backdoors & Breaches card game and PROMPT# zine. The company takes an AI-positive approach to security testing, using AI to augment rather than replace human testers.

Differentiator

Problem solved

Functional benefit

Brands

  • AntiSOC: Continuous adversary validation platform combining automated adversary simulation, AI-augmented continuous penetration testing, and exposure validation
  • Fusion Penetration Testing
  • Backdoors & Breaches
  • PROMPT# Zine
  • Talkin' Bout [Infosec] News

Products and services

  • Traditional Penetration Testing

Quantifiable outcome

  • Fusion AI runs at approximately one-third the cost of traditional external pentests
  • +1 more outcomes

Companies that use Black Hills Information Security

Customer profile

Segments2 records

Ideal customer profiles3 records

Black Hills Information Security technology and API

Technology

Technology focussed Yes

API detail

Has API
No
API docs
API detail

Core technology

AI maturity

App detail

AI capability9 records

Feature5 records

Black Hills Information Security partnerships and signals

Strategic signal

Partnerships

Five partnerships are on record, tiered core and minor.

  • Active CountermeasurescoreStrategic or Co-development PartnerPart of the BHIS Tribe of Companies. Active Countermeasures provides free security tools including AC-Hunter and RITA (Realtime Intelligence Threat Analysis). Deep operational and strategic integration with BHIS security testing services.
  • Wild West Hackin' FestcoreStrategic or Co-development PartnerPart of the BHIS Tribe of Companies. An annual hands-on cybersecurity conference held in Deadwood, South Dakota. Provides training, talks, and networking opportunities for security professionals, aligned with BHIS's educational mission.
  • Antisyphon TrainingcoreStrategic or Co-development PartnerPart of the BHIS Tribe of Companies. Training organization providing cybersecurity education and professional development. Hosts the AI Security Summit and other training events.
  • Backdoors & BreachescoreStrategic or Co-development PartnerPart of the BHIS Tribe of Companies. An incident response card game created by BHIS to help organizations conduct IR tabletop exercises and learn attack tactics, tools, and methods.
  • REKCAH ComicsminorStrategic or Co-development PartnerPart of the BHIS Tribe of Companies. Security-themed comic content for the cybersecurity community.

Scale indicators3 records

Recent moves6 records

Expansion highlights5 records

Black Hills Information Security competitors and assessment

Company assessment

Direct peers

  • Praetorian: Offensive security firm offering penetration testing, red team, and attack surface management services. Closely comparable in scope and boutique scale, with similar emphasis on continuous validation.
  • NCC Group: Global cybersecurity consulting firm with a large dedicated penetration testing practice across infrastructure, web, and cloud. Directly comparable to BHIS as a professional-services pentest provider, though significantly larger and UK-headquartered.
  • Coalfire: Cybersecurity advisory firm with substantial penetration testing and compliance services practice. Comparable to BHIS in offering breadth across technical testing and advisory, though larger and more compliance-focused.
  • TrustedSec: Offensive security consultancy offering penetration testing, red teaming, and incident response. Comparable boutique practitioner-led model, similar community-driven brand, and overlapping customer base of enterprise buyers.
  • NetSPI: Pentesting and attack surface management firm with a strong continuous/managed testing offering (NetSPI Resolve). Highly comparable to BHIS on traditional pentesting and on the continuous-testing subscription model embodied by AntiSOC.
  • Bishop Fox: Boutique offensive security firm specializing in penetration testing, red teaming, and attack surface management. Closely comparable to BHIS in offering mix, boutique scale, and practitioner-led delivery model.

Broad incumbents

  • CrowdStrike: Endpoint security leader that has expanded into exposure management, ASM, and offensive security testing. Comparable as a competitor for adjacent services buyers, with much larger platform scale and enterprise sales motion.
  • Mandiant (Google Cloud): Large incident response and security testing firm now part of Google Cloud, with deep penetration testing and red team offerings. Represents the scaled incumbent competing for enterprise IR and offensive security engagements.
  • Rapid7: Security platform vendor (Metasploit owner) offering vulnerability management, ASM, and managed testing services. Comparable in adjacent vulnerability testing categories, with broader portfolio and significantly larger scale.

Emerging players

  • HackerOne: Platform for crowdsourced and continuous penetration testing connecting enterprises to a researcher community. Comparable to BHIS's continuous testing direction but uses a crowdsourced delivery model rather than in-house practitioner teams.

Market position

Competitive moat4 records

Key risks6 records

Key highlights6 records

Customer concentration

Black Hills Information Security social profiles

Digital presence

Black Hills Information Security financial estimates

Financial estimate

Revenue estimate

Valuation estimate

Black Hills Information Security leadership team

Management profile

Number of profiles

Profiles2 records

Black Hills Information Security subsidiaries and ownership

Company hierarchy

Subsidiaries5 records

Black Hills Information Security funding detail

Funding detail

Funding overview

Funding rounds

Investors

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

Black Hills Information Security M&A and investment

M&A and investment

M&A

Investments

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about Black Hills Information Security

What does Black Hills Information Security do?

Black Hills Information Security provides offensive and continuous security testing services to organizations, including traditional and AI-augmented (Fusion) penetration testing, continuous adversary validation (AntiSOC), web application testing, AI security assessments, incident response, managed SOC (ActiveSOC), blue team, blockchain, and high-profile risk assessments. Its proprietary Fusion AI platform combines autonomous agents with senior human tester sign-off on every finding to deliver external penetration testing at approximately one-third the cost of traditional engagements.

Is Black Hills Information Security a public or private company?

Black Hills Information Security is a private company. It is classified as founder individual operated bootstrapped and is currently operating.

When was Black Hills Information Security founded?

Black Hills Information Security was founded in 2008. It employs 101 to 250 people.

Where is Black Hills Information Security based?

Black Hills Information Security is headquartered in Spearfish, United States, in the North America region.

How does Black Hills Information Security make money?

Three revenue lines are on record. Penetration Testing Services are the primary driver. The others are continuous Security Monitoring (AntiSOC) and AI Security Assessments.

Who are Black Hills Information Security's main competitors?

Direct peers on record are Praetorian, NCC Group, Coalfire, TrustedSec, NetSPI and Bishop Fox. Broad incumbents are CrowdStrike, Mandiant (Google Cloud) and Rapid7. HackerOne is listed as an emerging player.

Does Black Hills Information Security have an API?

No public API is recorded for Black Hills Information Security.

What industry is Black Hills Information Security in?

Black Hills Information Security's product category is Cybersecurity Services. Its primary akta.pro industry code is BPAKADAE, Penetration Testing & Red Teaming, with a secondary code of BPAEADAD, Vulnerability Management & Penetration Testing Services. Its NAICS code is 54138 and its SIC code is 8734.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales
Live signals
BlackhillsinfosecGetting Started with AI Hacking Part 2: Prompt InjectionBlack Hills Information Security researcher Brian Fehrman details various prompt injection techniques used to manipulate Large Language Models into ignoring system instructions. The article outlines attack vectors such as instruction overriding, role-based deception, and indirect injection via external sources like emails or documents. It highlights the critical security risks these vulnerabilities pose as AI systems become more deeply embedded in operational processes.BlackhillsinfosecPitting AI Against AI: Using PyRIT to Assess Large Language Models (LLMs)Black Hills Information Security researcher Brian Fehrman published a technical guide on using Microsoft's open-source PyRIT framework to automate red teaming against Large Language Models. The article details the installation process and demonstrates how an attacking LLM, such as OpenAI's GPT-4o-mini, can be orchestrated to probe target systems like Dreadnode's Crucible platform for vulnerabilities. This approach allows security professionals to efficiently identify safety issues and data exposure risks in AI implementations.BlackhillsinfosecIntro to Data Analytics Using SQLBlack Hills Information Security hosted a webcast on November 21, 2024, where presenter Ethan Robish introduced the fundamentals of data analytics using SQL. The session covered database types, specifically contrasting transactional and analytical databases, and demonstrated practical applications using DuckDB. Key topics included SQL syntax, data exploration techniques, and the interoperability of SQL across different programming environments.