Famed White Hat Hacker Samczsun on How to Improve Crypto Security - Ep. 613
Unchained27 Feb 2024

Famed White Hat Hacker Samczsun on How to Improve Crypto Security - Ep. 613

Listen to the episode on Apple Podcasts, Spotify, Fountain, Overcast, Podcast Addict, Pocket Casts, Pandora, Castbox, Google Podcasts, Amazon Music, or on your favorite podcast platform. Well-known white hat hacker and head of security at Paradigm samczsun recently took the wraps off a new security organization called the Security Alliance (SEAL) that offers a 911 hotline for immediate response to security threats, runs war games to simulate potential security incidents, and provides a safe harbor agreement to protect white hat hackers from legal liabilities. He joined Unchained to discuss why he and his fellow white hat hackers decided to start the Security Alliance and how it operates, how the safe harbor agreement works, the measures he takes to maintain his anonymity and why, the top security measures people in crypto should take to protect themselves, and what attack areas in crypto Sam still considers “scary.” Show highlights: How samczsun got into white hat hacking The most memorable saves and rescues sam was able to perform Whether there's a reason why sam is so good at noticing bugs in crypto The origin of his samczsun handle What the Security Alliance is and why it was formed How SEAL would approach a bug or a hack Whether black hat hackers are trying to exploit open groups Why the work in the group is volunteered, not paid, and whether that's sustainable How the SEAL War Games help in training on how to respond to an incident in Web3 What the Safe Harbor Agreement is and what it aims to accomplish for white hat hackers How sam protects his identity and whether his coworkers know what he looks like The top security measures people working in crypto should take How projects should approach the audit for their smart contracts given it's an expensive endeavor What attack vectors still scare sam What is ‘White Hat Hacking’? White hat hacking, often referred to as ethical hacking, is a cybersecurity practice where skilled computer experts use their knowledge for good, employing the same methods as malicious hackers (black hat hackers) but with a significant difference: they do so with permission and for a constructive purpose. These ethical hackers identify vulnerabilities in computer systems, networks, or applications before malicious attackers can exploit them. By detecting and resolving these security weaknesses, white hat hackers help organizations strengthen their defenses against cyber threats. Thank you to our sponsors! Popcorn Network Polkadot Guest: Samczsun, CEO of Security Alliance (SEAL) and Head of Security at Paradigm Previous appearances on Unchained: The Chopping Block: Top White Hat Hacker Samczsun Discusses the State of Crypto Security Links Introducing the Security Alliance Bloomberg: Paradigm’s Famed ‘White-Hat’ Hacker Unites Peers Against Crypto Attacks, White Hat Safe Harbor [Github] Chainalysis: Funds Stolen from Crypto Platforms Fall More Than 50% in 2023, but Hacking Remains a Significant Threat as Number of Incidents Rises sam’s tweet on security practices Halborn: Explained: The Nomad Hack (August 2022) Learn more about your ad choices. Visit megaphone.fm/adchoices

Avsnitt(1139)

The Chopping Block: Defi United’s “Bailout,” MegaETH’s KPI Vesting, and Prediction Market Chaos

The Chopping Block: Defi United’s “Bailout,” MegaETH’s KPI Vesting, and Prediction Market Chaos

Is the era of protocol bailouts upon us? The Chopping Block crew and MegaETH's Shuyao Kong debate Defi United’s community-funded rescue, the KPI vesting experiment shaking up token launches, whether D...

30 Apr 1h

How Microsoft Won the OpenAI Fight as Markets Rally on Iran

How Microsoft Won the OpenAI Fight as Markets Rally on Iran

One side wins the OpenAI-Microsoft divorce, Ram calls a 19% earnings growth year 'bananas,' and Chris wants the US to hack back against DeFi exploiters. Here is the full rundown. --- Heads up! If y...

29 Apr 57min

How Microsoft Won in Its Revised Deal With OpenAI

How Microsoft Won in Its Revised Deal With OpenAI

Microsoft restructured its agreement with OpenAI, and Ram Ahluwalia has a clear verdict: Microsoft won.  In this segment from Bits + Bips, Ram explains the three things Microsoft secured from the new...

29 Apr 3min

How Morpho Survived a $300M DeFi Hack With Only $1M Exposure

How Morpho Survived a $300M DeFi Hack With Only $1M Exposure

People think of Aave and Morpho as competitors. But Morpho only lost $1 million when North Korea drained $300M from a DeFi protocol. The architecture explains why. ===================================...

29 Apr 37min

Bits + Bips: How the Kelp rsETH Hack Left Aave With $193M in Bad Debt

Bits + Bips: How the Kelp rsETH Hack Left Aave With $193M in Bad Debt

Luke Leasure and Shaunda Devens of Blockworks Research explain how three compounding failures, Kelp's one-of-one bridge signer, Layer Zero's permissive default settings, and Aave's failure to flag it ...

28 Apr 9min

Arbitrum Froze $70M From North Korea? Griff Green on the Decision + Miguel Morel on the Hack

Arbitrum Froze $70M From North Korea? Griff Green on the Decision + Miguel Morel on the Hack

KelpDAO’s hackers left telltale signs pointing to one culprit, North Korea. Then, in a surprise move, the Arbitrum Security Council decided to fight back. ============================================...

26 Apr 1h 7min

Did Arbitrum Violate DRPK's Property Rights? No, Because It Wasn't Their Property

Did Arbitrum Violate DRPK's Property Rights? No, Because It Wasn't Their Property

The $300M KelpDAO exploit became a watershed moment for DeFi, and the Arbitrum Security Council voted froze $70M worth of stolen funds. Is this a slippery slope or learning from history? Thank you...

24 Apr 1h 20min

DEX in the City: KelpDAO vs. LayerZero: Who Is Liable When a DeFi Protocol Is Hacked?

DEX in the City: KelpDAO vs. LayerZero: Who Is Liable When a DeFi Protocol Is Hacked?

A $300M bridge exploit is forcing the question DeFi has been avoiding: when users lose money, who is actually responsible — the protocol, the infrastructure provider, or both? Thanks to our sponsor...

24 Apr 47min

Populärt inom Politik & nyheter

aftonbladet-krim
rss-krimstad
svenska-fall
p3-krim
spar
aftonbladet-daily
flashback-forever
politiken
rss-sanning-konsekvens
rss-krimreportrarna
motiv
rss-vad-fan-hande
blenda-2
rss-flodet
rss-frandfors-horna
rss-expressen-dok
grans
rss-aftonbladet-krim
svd-ledarredaktionen
ett-rent-noje