How the $1.5 Billion Bybit Hack Could Have Been Prevented - Ep. 791
Unchained28 Feb 2025

How the $1.5 Billion Bybit Hack Could Have Been Prevented - Ep. 791

Crypto derivatives exchange Bybit just became the latest victim of North Korea’s elite hacking unit, the Lazarus Group. They didn’t brute-force their way in. They didn’t exploit some obscure vulnerability. Instead, they tricked a trusted developer, slipped in malicious code, and took off with a fortune. How did this happen? Why was $1.5 billion sitting in a single wallet? What mistakes did Bybit and Safe make? And, more importantly, what needs to change to stop this from happening again? This week, Mudit Gupta, chief information security officer at Polygon, joins Unchained to expose the security failures, the sophisticated tactics Lazarus used, and why crypto still hasn’t learned its lesson. Show highlights: 2:11 Mudit’s experience with North Korea’s Lazarus 3:24 How Lazarus perpetrated the $1.5 billion hack 5:55 Why Lazarus relies on social engineering over technical exploits 7:34 Why Bybit was so specifically targeted by the hackers 10:02 What Bybit should have done to prevent the exploit 13:12 Why Mudit believes there was “no reason” to hold so much ETH in one single wallet 15:57 Who should be a signer in multisigs 17:46 How to prevent using a malicious website 19:13 Why Safe should have done things differently, according to Mudit 19:55 How Bybit and Safe handled crisis communication 24:20 Mudit’s must-know security tips for protecting your crypto Visit our website for breaking news, analysis, op-eds, articles to learn about crypto, and much more: unchainedcrypto.com Thank you to our sponsors! Mantle Guest Mudit Gupta, Chief Information Security Officer at Polygon Links Recent coverage of Unchained on the Bybit hack: North Korean Hackers Are Winning. Is the Crypto Industry Ready to Stop Them? The Chopping Block: Crypto’s Worst Week? Bybit Hack, Libra Scandal, & The Memecoin Reckoning Bits + Bips: Markets Are Down Bad. When Will Crypto Recover? Unchained: Bybit Flows Return to ‘Normal’ After Biggest-Ever Crypto Hack Bybit Hack Forensics Report "Safe{Wallet} Statement on Targeted Attack on Bybit " Learn more about your ad choices. Visit megaphone.fm/adchoices

Denne episoden er hentet fra en åpen RSS-feed og er ikke publisert av Podme. Den kan derfor inneholde annonser.

Episoder(1192)

Why CME Sued the CFTC Over the Kalshi Bitcoin Perp Approval

Why CME Sued the CFTC Over the Kalshi Bitcoin Perp Approval

A regulated exchange suing its own regulator almost never happens. The hosts trace why CME did it, and why the CFTC may have better odds than crypto Twitter thinks. Thanks to our sponsor! 👉 F...

27 Jun 50min

How the Strategy Empire Breaks, and Whether Saylor Can Stop It

How the Strategy Empire Breaks, and Whether Saylor Can Stop It

Vinny Lingham warned 18 months ago that Michael Saylor would harm Bitcoin more than FTX. Now he maps how the Strategy empire breaks and the one move that could slow the bleed. =======================...

26 Jun 25min

Ex-Ethereum Foundation Researchers Launched Their Own Lab: Uneasy Money

Ex-Ethereum Foundation Researchers Launched Their Own Lab: Uneasy Money

An anti-MEV activist spent weeks building 66 fake contracts to trap the sandwich bot jaredfromsubway.eth. Then jared's operators did the one thing nobody expected. ===================================...

26 Jun 1h 11min

The Chopping Block: Is Strategy the Luna for Suits?, ETH Labs Shakeup & CME vs Perps

The Chopping Block: Is Strategy the Luna for Suits?, ETH Labs Shakeup & CME vs Perps

The crew debates whether Saylor's STRC preferred shares are "Luna for suits," unpacks the ETH Labs spin-out and Ethereum Foundation layoffs, breaks down the CME's lawsuit against the CFTC to kill dome...

25 Jun 1h 4min

Are Perpetuals Swaps or Futures? The CME Picks a Fight

Are Perpetuals Swaps or Futures? The CME Picks a Fight

Three years ago, Chris Perkins sat across from Terry Duffy in Congress and made the case for perpetuals. Duffy pushed back — hard. Now Duffy's CME is suing the very regulator that finally allowed them...

24 Jun 11min

How Digital Credit Assets like STRC and SATA Differ from Bitcoin or DAT Stocks

How Digital Credit Assets like STRC and SATA Differ from Bitcoin or DAT Stocks

Was Michael Saylor wrong to sell Bitcoin? Matt Cole breaks from his fellow critics on Strategy, S&P's junk rating on MSTR, and whether the model is breaking. =========================================...

23 Jun 56min

Why Kalshi's John Wang Says Perps Are 'the Most Pure Trading Instrument'

Why Kalshi's John Wang Says Perps Are 'the Most Pure Trading Instrument'

Kalshi just brought crypto perps to the US, targeting a $90 trillion offshore market. Its Head of Crypto, John Wang, explains the bet, the risks, and who Kalshi is actually competing with. ==========...

19 Jun 48min

Why Fable's Shutdown Is a Warning for Every AI Lab: Uneasy Money

Why Fable's Shutdown Is a Warning for Every AI Lab: Uneasy Money

The government export-controlled Anthropic's best model. Kain, Luca, and Taylor debate whether Dario talked his way into it and what the shutdown means for every AI lab. =============================...

19 Jun 1h 14min

Populært innen Politikk og nyheter

giver-og-gjengen-vg
aftenpodden
aftenpodden-usa
fotballpodden-2
forklart
stopp-verden
popradet
det-store-bildet
nokon-ma-ga
rss-espen-lee-usensurert
dine-penger-pengeradet
rss-gukild-johaug
lydartikler-fra-aftenposten
hanna-de-heldige
rss-penger-polser-og-politikk
rss-ness
aftenbla-bla
frokostshowet-pa-p5
e24-podden
rss-utenrikskomiteen-med-bogen-og-grasvik