Binance ‘red teams’ its own staff every month to keep hackers out
Binance runs monthly internal phishing simulations against employees through its red team to test security awareness and improve defenses against social engineering. Chief security officer Jimmy Su said workers who fail receive remediation training, while repeated failures can hurt performance reviews and potentially lead to dismissal. The program has been running for three to four years and has significantly improved employee security hygiene over time. Some tests mimic recruiter outreach, fake conference invites, or other common lure tactics used in real attacks. The practice reflects the broader threat to crypto firms, where social engineering has driven a large share of security incidents, including major hacks linked to phishing and fake video-call software.
