Close Menu
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
What's Hot

Binance ‘red teams’ its own staff every month to keep hackers out

July 28, 2026

U.S. Senate puts off crypto Clarity Act for now as it focuses limited bandwidth elsewhere

July 28, 2026

1inch Warns of Inefficiencies in Old Liquidity Designs

July 28, 2026
Facebook X (Twitter) Instagram
Recession Profit AlertsRecession Profit Alerts
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
Recession Profit AlertsRecession Profit Alerts
Home»Security»Binance ‘red teams’ its own staff every month to keep hackers out
Security

Binance ‘red teams’ its own staff every month to keep hackers out

July 28, 2026No Comments3 Mins Read

Cryptocurrency exchange Binance runs simulated phishing attacks against its own employees and can fire staff who repeatedly fail the tests, according to Binance chief security officer Jimmy Su.

The fake attacks are conducted by Binance’s red team, an internal ethical hacking unit whose job is to break into systems to identify vulnerabilities.

“We do phishing attacks on our own employees on a monthly basis just so we understand if our security hygiene is improving,” Su told Cointelegraph. “The ones that have failed it, we will do remediation training.”

The measure shows the lengths crypto companies will go to prepare for social engineering attacks. Binance, the largest crypto exchange in the world, reports 323 million registered users, while DefiLlama estimates the exchange holds $137.7 billion in assets.

Jimmy Su, chief security officer at Binance. Source: Binance

In February, AMLBot estimated that 65% of crypto security incidents in 2025 were driven by social engineering. In April, Drift Protocol suffered a $285 million hack, which came after a long-term social engineering campaign.

Su said Binance has been running these simulated attacks for three to four years.

“In the beginning, the security hygiene left a lot to be desired. But after this amount of time, the company has improved significantly.”

One of the simulated attacks involves the red team posing as job recruiters, said Su.

One of the more well-known attack methods in recent years has been the “Zoom meeting attack,” where hackers trick victims into installing malware disguised as an update to the video conferencing app. Many of these attacks start with a fake job opportunity, though some use project funding or a partnership proposal as the lure.

See also  September becomes the biggest month for crypto exploits in 2023: CertiK

In September 2025, a major Venus Protocol user lost roughly $13 million after a malicious Zoom client compromised his computer, leading him to grant an attacker control over his account. Venus paused the protocol and used an emergency governance vote to recover the assets, later returning positions worth $11.4 million to the victim.

“The interview process is just one scenario. There are other ones. For example, it could be that we are offering some kind of free conference invite just to try to collect personal information and see how many of them will actually fall for it,” said Su.

Su said employees are incentivized to perform well on the tests because the results are reflected in their performance reviews.

“If someone repeatedly fails the phishing-simulation attack, that will negatively impact their rating. That’s the incentive to be vigilant.”

Repeated, severe failures could lead to their rating to “bottom out,” which could see them dismissed, he said.

Source link

Binance hackers Month Red Staff Teams

Related Posts

8,000 Devices Infected, 80 Crypto Wallets Accessed by Video Game Malware

July 27, 2026

The Secret Service Recovers $25 Million in Crypto From Five Separate Investigations

July 27, 2026

Ahmedabad resident’s $81,700 loss exposes a matrimonial app crypto scam

July 27, 2026

Donald Trump Is Reported to Have Ordered a Halt to Attacks on Iran

July 27, 2026
Top Posts

Elon Musk Flamed NFTs on the Joe Rogan Experience (And BTC Maximalists LOVED It).

November 4, 2023

Alchemy acquires blockchain data indexing platform Satsuma

September 26, 2023

SEC’s Peirce warns some DeFi vaults, onchain lending may fall under securities laws

July 23, 2026

Type above and press Enter to search. Press Esc to cancel.