Close Menu
Crypto Breaking News
    Crypto Breaking News
    • News
      • Press Release
      • Featured
      • Events
      • Exchanges
      • Bitcoin
      • Ethereum
      • Solana
      • Ripple
      • Artificial Intelligence (AI)
      • Real World Assets (RWA)
      • Markets & Finance
      • Regulation & Policy
      • Press Releases by PR Newswire
      • News by CoinPedia
      • News by Coincu
      • News by Blockchain Wire
    • Crypto
      • Companies
      • Events
      • Partners
      • Buy Crypto
      • Timers
    • Advertise
      • Submit a Press Release
      • Logos
      • About
      • Services
    • Offers
      • Marketing Services
      • Wallets & Tools
    • Account
    • Video
    • Contact
    Submit PR
    Crypto Breaking News
    Crypto News Exchanges

    Binance Runs Monthly “Red Team” Tests on Staff to Thwart Hackers

    15 seconds ago
    FacebookTwitterLinkedInCopy Link
    News Feed
    Google NewsRSS
    Binance Runs Monthly “red Team” Tests On Staff To Thwart Hackers
    Binance Runs Monthly “red Team” Tests On Staff To Thwart Hackers

    Binance’s chief security officer, Jimmy Su, says the exchange is actively testing its own workforce against simulated phishing attempts—and tying repeated failures to employment outcomes. Su told Cointelegraph that the internal “red team” runs phishing exercises on a monthly basis to gauge whether security awareness among staff is improving.

    According to Su, employees who fail the exercises aren’t just retrained once. Instead, Binance uses remediation training for those who miss the mark, and persistent, repeat failures can ultimately affect their standing at the company, reflecting the role that social engineering plays in real-world cyber incidents.

    Key takeaways

    • Binance conducts monthly simulated phishing attacks against employees as part of an ongoing internal security program.
    • The simulations are carried out by Binance’s red team, a unit focused on ethical hacking and vulnerability discovery.
    • Failed employees receive remediation training, while repeated failures can negatively affect performance reviews and potentially job outcomes.
    • Binance says the program has been running for three to four years, with Su describing significant improvements in security hygiene over time.
    • The company uses multiple real-world lures—such as fake recruiter outreach and other “information collection” tactics—to test staff resilience.

    Why Binance is testing its own staff

    Su said Binance runs phishing simulations “just so we understand if our security hygiene is improving,” framing the effort as a practical measurement exercise rather than a theoretical awareness campaign. The red team’s role, as described by Su, is to attempt intrusions and interactions that mirror real attack paths, then feed results back into training.

    Binance is often described as a large-scale target in crypto due to its user base and market footprint. Su did not provide additional internal metrics in the interview, but the context underscores the stakes: Binance reports 323 million registered users, while DefiLlama estimates the exchange holds $137.7 billion in assets.

    For investors and traders, the takeaway is that big exchanges treat human behavior as part of their threat model. The more a firm relies on operational processes—such as customer support, account access, identity verification, and internal tooling—the more social engineering becomes a risk factor that technical defenses alone can’t fully eliminate.

    Social engineering remains a recurring breach pathway

    Su’s comments land in the context of broader industry reporting on social engineering as a driver of crypto security incidents. In February, AMLBot estimated that 65% of crypto security incidents in 2025 were driven by social engineering. Later, in April, a long-term social engineering campaign preceded Drift Protocol’s $285 million hack, according to earlier coverage referenced by Cointelegraph.

    Su also said the simulated attacks have been in place for three to four years. He suggested that security hygiene has improved substantially since the program began: “In the beginning, the security hygiene left a lot to be desired. But after this amount of time, the company has improved significantly,” he said.

    This matters because it highlights a specific operational change: Binance is not treating awareness training as a one-time checkbox, but as an ongoing feedback loop. The key shift for organizations is moving from “teach and forget” to “test, measure, and enforce.”

    What the simulations look like: recruiting lures and data-harvesting scenarios

    One scenario Binance uses is impersonation of job recruiters. Su said the red team poses as recruiters—an approach that mirrors a common pattern seen in phishing incidents across industries, where “legitimate-sounding” contact becomes the entry point for further manipulation.

    Su also described another lure: fake “free conference invites” aimed at collecting personal information and determining how many employees fall for it. He emphasized that the job interview process is only one of multiple scenarios used by Binance’s red team.

    These details are important because social engineering attacks in crypto don’t always arrive as obvious “click this link” attempts. They can be structured like legitimate professional outreach, scheduling requests, or follow-ups—channels that can appear normal to staff who might otherwise be trained to recognize traditional phishing emails.

    Another well-known technique referenced in the interview is the “Zoom meeting attack,” where attackers trick victims into installing malware disguised as a video conferencing update. Many such campaigns begin with a fake job opportunity, but they can also use other professional hooks like project funding or partnership proposals.

    How failure is handled: remediation, reviews, and potential dismissal

    Binance’s approach doesn’t end with simulated testing. Su said employees who fail the phishing simulations undergo remediation training. He also described incentives tied to the results, stating that performance reviews reflect test outcomes.

    Su’s framing is direct: “If someone repeatedly fails the phishing-simulation attack, that will negatively impact their rating. That’s the incentive to be vigilant.”

    He further said repeated severe failures could “bottom out” performance ratings, potentially leading to dismissal. While Su did not outline exact thresholds or timelines for dismissal in the interview, the principle is clear: Binance is treating repeated susceptibility to social engineering as a personnel risk, not just a training gap.

    Outside centralized exchanges, similar social engineering dynamics have produced major losses in DeFi ecosystems as well. For example, Cointelegraph referenced a September 2025 incident in which a Venus Protocol user reportedly lost around $13 million after a malicious Zoom client compromised a computer and led the attacker to gain control over the victim’s account. Venus paused the protocol and used an emergency governance vote to recover assets, later returning positions worth $11.4 million to the victim, according to earlier coverage cited in the article.

    Those examples reinforce the broader point behind Binance’s internal testing: even when attackers target individuals rather than systems, the outcome can still be catastrophic at scale.

    What readers should watch next is whether Binance’s approach—monthly red-team phishing tests, remediation, and performance-linked consequences—becomes a more standard pattern across large crypto firms as regulators and stakeholders increasingly focus on operational security beyond code and infrastructure.

    Risk & affiliate notice: Crypto assets are volatile and capital is at risk. This article may contain affiliate links. Read full disclosure

    Crypto Breaking News
    • Website
    • Facebook
    • X (Twitter)
    • Pinterest
    • Instagram
    • Tumblr
    • LinkedIn

    The Crypto Breaking News editorial team curates the latest news, updates, and insights from the global cryptocurrency and blockchain industry.

    Related Posts

    Clarity Act Faces November Timeline As Election Politics Slow Senate Progress

    Clarity Act Faces November Timeline as Election Politics Slow Senate Progress

    7 hours ago
    Eu Adds Htx To Russia Sanctions Package Expands Crypto Crackdown

    EU Adds HTX to Russia Sanctions Package, Expands Crypto Crackdown

    8 hours ago
    Wisdom Group Advised To Refile Us Charter Application Under Genius Act

    Wisdom Group Advised to Refile US Charter Application Under GENIUS Act

    8 hours ago
    Dango’s Perp Dex Shuts Down After Nearly Four Months In Operation

    Dango’s Perp DEX Shuts Down After Nearly Four Months in Operation

    16 hours ago
    Ethereum Etfs Break 5-Day Inflow Streak With Weekly Outflows

    Ethereum ETFs Break 5-Day Inflow Streak With Weekly Outflows

    18 hours ago
    Eu Extends Belarus Crypto Ownership Ban To All Mica Firms From Aug. 25

    EU Extends Belarus Crypto Ownership Ban to All MiCA Firms From Aug. 25

    19 hours ago

    Search Crypto News

    Featured Crypto News

    Win 3 Free Ga Passes To Bitcoin Asia 2026 In Hong Kong With Cryptobreaking

    Win 3 Free GA Passes to Bitcoin Asia 2026 in Hong Kong With CryptoBreaking

    24 July 2026
    8 Ai Youtube Channels To Follow In 2026

    8 Best AI YouTube Channels to Follow

    20 July 2026

    Latest News

    • Binance Runs Monthly “Red Team” Tests on Staff to Thwart Hackers
    • Clarity Act Faces November Timeline as Election Politics Slow Senate Progress
    • EU Adds HTX to Russia Sanctions Package, Expands Crypto Crackdown
    • Wisdom Group Advised to Refile US Charter Application Under GENIUS Act
    • Dango’s Perp DEX Shuts Down After Nearly Four Months in Operation
    • Ethereum ETFs Break 5-Day Inflow Streak With Weekly Outflows
    • EU Extends Belarus Crypto Ownership Ban to All MiCA Firms From Aug. 25
    • Poolin Files for Chapter 11 as $52M Plan Moves Ahead for Texas Mining Sites
    • Ripple Starts RLUSD Mint for Institutional Access
    • Hyperliquid RWA Trading Volume Overtakes Other Asset Categories

    Join 20,000+ Crypto Followers

    • Facebook2.4K
    • Twitter4.5K
    • Instagram7.2K
    • LinkedIn4.3K
    • Telegram55
    • Threads1000
    Ledger
    Ledger

    About Crypto Breaking News

    About Crypto Breaking News

    Crypto Breaking News is a fast-growing digital media platform focused on the latest developments in cryptocurrency, blockchain, and Web3 technologies. Our goal is to provide fast, reliable, and insightful content that helps our readers stay ahead in the ever-evolving digital asset space.

    Web3 Digital L.L.C-FZ
    License Number: 2527596
    📞 +971 50 449 2025
    ✉️ info@cryptobreaking.com
    📍Meydan Grandstand, 6th floor, Meydan Road, Nad Al Sheba, Dubai, United Arab Emirates

    FacebookX (Twitter)InstagramPinterestYouTubeTumblrBlueskyLinkedInRedditTikTokTelegramThreadsRSS

    Links

    • Crypto News
    • Submit a Press Release
    • Advertise
    • Contact Us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • Stocks Breaking News

    advertising

    Ledger
    © 2026 CryptoBreaking.com | All rights reserved | Powered by Web3 Digital & Osom One

    Type above and press Enter to search. Press Esc to cancel.

    Change Location
    Find awesome listings near you!