Officer's Blog - Page 15

Someone overheard me! Why it's important to think about all attack vectors, even if they seem unlikely to happen?

It is no secret that hackers can find out which keys you press. To do this, a hacker needs to install a key-logger on the victim's computer. However, it is already possible to simply find out what a person is typing just by the sound from the microphone or, let's say, an IoT device speakers. But how does it work exactly? Each key on the keyboard has a unique sound.


MacOS + IOS + Crypto + OpSec = ?

In my favorite chat room recently I was asked, in light of recent events, would it be safer to use MacOS & IOS for work? Is it true that they have better security? I don't have a definite answer here - both yes and no. Let's get to the bottom of it!


100 BTC deadman drops: Silk Road (?)

Disclaimer from CIA_Officer: Greetings dear readers! I rarely use other people’s content, but today I came across an interesting investigation. Since the topic is well known, I am sure you will find it interesting to go through the Author’s steps and follow the conclusions.


Scavenging: Don’t be too kind

Today I want to remind you about an old scam implementation which is called a scavenging. Remember, the 12-word or private key scam is a pretty common one on TG and if anyone giving you their private key/seed — he is scamming you!


How to win the war, trick the KGB and protect your crypto-assets from theft by Steganography

Today I would like to discuss an important thing, but to understand the topic, please read my previous articles first, especially about OpSec.


Master of OpSec Masters: A View Through the Prism of Time

Today I would like to discuss the OpSec mindset, how it can be developed and why it is needed.


How hackers may steal your Ethers and why does eth_sign function matter?

Today we're going to look into a new scam method!


Per Aspera ad Astra: How to become a smart contract auditor & bug bounty-hunter

Play & Learn Smart Contract Hacking: capturetheether.com ethernaut.openzeppelin.com.


2 Violent attack vectors in Crypto: a detailed review

Operational security professionals work to figure out where their information can be breached.


OpSec in Crypto: Thoughts

Why do you keep saying that cold wallet devices are not secure?


Not an APT Average: Grand Theft Bitcoin

The Story begins...Greetings, readers! Today you'll see a promised interview with a fascinating individual!


Attacks via a Representative Sample : Myths and Reality

Imagine the situation: you are an employee of a secret service, and your task is to calculate a particularly dangerous criminal engaged in blackmail.