Cryptocurrency change Binance runs simulated phishing assaults towards its personal workers and may hearth workers who repeatedly fail the checks, based on Binance chief safety officer Jimmy Su.
The pretend assaults are carried out by Binance’s pink staff, an inner moral hacking unit whose job is to interrupt into methods to determine vulnerabilities.
“We do phishing assaults on our personal workers on a month-to-month foundation simply so we perceive if our safety hygiene is bettering,” Su advised Cointelegraph. “Those which have failed it, we are going to do remediation coaching.”
The measure exhibits the lengths crypto firms will go to arrange for social engineering assaults. Binance, the most important crypto change on the earth, stories 323 million registered customers, whereas DefiLlama estimates the change holds $137.7 billion in belongings.
Jimmy Su, chief safety officer at Binance. Supply: Binance
In February, AMLBot estimated that 65% of crypto safety incidents in 2025 had been pushed by social engineering. In April, Drift Protocol suffered a $285 million hack, which got here after a long-term social engineering marketing campaign.
Su stated Binance has been working these simulated assaults for 3 to 4 years.
“To start with, the safety hygiene left rather a lot to be desired. However after this period of time, the corporate has improved considerably.”
One of many simulated assaults includes the pink staff posing as job recruiters, stated Su.
Associated: Dealer loses $1M after signing phishing token approval
One of many extra well-known assault strategies lately has been the “Zoom assembly assault,” the place hackers trick victims into putting in malware disguised as an replace to the video conferencing app. Many of those assaults begin with a pretend job alternative, although some use challenge funding or a partnership proposal because the lure.
In September 2025, a significant Venus Protocol consumer misplaced roughly $13 million after a malicious Zoom shopper compromised his laptop, main him to grant an attacker management over his account. Venus paused the protocol and used an emergency governance vote to recuperate the belongings, later returning positions value $11.4 million to the sufferer.
“The interview course of is only one situation. There are different ones. For instance, it may very well be that we’re providing some form of free convention invite simply to attempt to accumulate private data and see what number of of them will really fall for it,” stated Su.
Su stated workers are incentivized to carry out effectively on the checks as a result of the outcomes are mirrored of their efficiency evaluations.
“If somebody repeatedly fails the phishing-simulation assault, that may negatively impression their ranking. That’s the motivation to be vigilant.”
Repeated, extreme failures might result in their ranking to “backside out,” which might see them dismissed, he stated.
Journal: Fears of AI-driven DeFi hack epidemic overstated for now — however not for lengthy

