市值
24小时
10071
Cryptocurrencies
58.26%
Bitcoin 分享

Kraken thwarts hacker’s ill-intentioned job application

Kraken thwarts hacker’s ill-intentioned job application


Blockworks
2025-05-02 14:31:19

This is a segment from the Empire newsletter. To read full editions, subscribe . Picture the iconic Spider-Man meme with the various Spider-Men pointing at each other. Got it in your head? Kraken said yesterday that it turned the tables on a North Korean hacker who was trying to get a job at the exchange. I spoke to Kraken’s chief security officer, Nick Percoco, who gave me some details that are, honestly, just perfect for a Friday edition. Percoco told me Kraken had received a list of email addresses tied to hackers. They, as one would expect, checked to see if any of those addresses would pop up around Kraken. One did. The person had applied for a job and was in a pool of candidates. Basically, he explained, the person’s resume wasn’t standout enough for the hiring team to otherwise pay attention. But the team decided to see what would happen if they proceeded with the hacker. According to Percoco, given some red flags, the person wouldn’t have gotten very far in the job application process. For example, when the person joined a Zoom call, it was under a different name (not the name he’d used on the application), and then he quickly changed it. When Percoco virtually sat down with the individual for one of the cultural interviews, things got interesting. It was Halloween, so naturally, Percoco asked the individual what he was doing for Halloween. After an extensive conversation, he claims it was pretty clear the person didn’t understand the holiday. Then, when asked to pull out his phone and show his Google map location (to verify that he was in Houston, Texas), the individual struggled with that, too, Kraken said. It took him a few minutes of pretty obvious scrolling to find Texas on his Google Maps, per Percoco. While this story is amusing now, it pulls back the curtain on a bigger problem in crypto. These bad actors are actively trying to infiltrate US crypto companies. Percoco warned that companies have to be more careful about who they’re hiring and how they verify them. In Kraken’s case, the individual had enough missteps that he wouldn’t have made it through the normal process. But hiring someone directly through Discord, for example, could leave a project at risk. His advice for screening a candidate that’s raising some red flags is to have them go to a place like a local Starbucks or McDonald’s and order something. That way — on a Zoom or virtual call — you can see where they are and it gives the interviewer insight into the location. For example, a McDonald’s in Germany would have German on the packaging instead of English, he said. Get the news in your inbox. Explore Blockworks newsletters: Blockworks Daily : Unpacking crypto and the markets. Empire : Crypto news and analysis to start your day. Forward Guidance : The intersection of crypto, macro and policy. 0xResearch : Alpha directly in your inbox. Lightspeed : All things Solana. The Drop : Apps, games, memes and more. Supply Shock : Bitcoin, bitcoin, bitcoin.


阅读免责声明 : 此处提供的所有内容我们的网站,超链接网站,相关应用程序,论坛,博客,社交媒体帐户和其他平台(“网站”)仅供您提供一般信息,从第三方采购。 我们不对与我们的内容有任何形式的保证,包括但不限于准确性和更新性。 我们提供的内容中没有任何内容构成财务建议,法律建议或任何其他形式的建议,以满足您对任何目的的特定依赖。 任何使用或依赖我们的内容完全由您自行承担风险和自由裁量权。 在依赖它们之前,您应该进行自己的研究,审查,分析和验证我们的内容。 交易是一项高风险的活动,可能导致重大损失,因此请在做出任何决定之前咨询您的财务顾问。 我们网站上的任何内容均不构成招揽或要约