Posts Tagged: LinkedIn

LinkedIn adding word games so you can procrastinate at work

LinkedIn may exist to help professionals look for new job opportunities and network with others, but it could soon become the place for a bit of down time, too.
Digital Trends

Elaborate hack of ‘Axie Infinity’ tied to fake LinkedIn job offer

Axie Infinity was the prime example of crypto gaming last year, when its play-to-earn formula helped it reach up to 2.7 million daily active users last November. But that all came crashing down in March, when hackers stole $ 625 million from the Ethereum-linked Ronin sidechain powering the game. Now, it turns out, the source of that hack came from an unlikely source: A fake job offer from LinkedIn. 

As The Block reports (via The Verge) based on two sources, the hackers infiltrated Axie Infinity owner Sky Mavin's network by sending a spyware-filled PDF to one employee. That person thought they were accepting a high-paying job from another firm, but it turns out that company never existed. According to the US government, North Korean hacker group Lazarus was behind the attack. 

“Employees are under constant advanced spear-phishing attacks on various social channels and one employee was compromised," Sky Mavis noted in a post-mortem blog post following the hack. "This employee no longer works at Sky Mavis. The attacker managed to leverage that access to penetrate Sky Mavis IT infrastructure and gain access to the validator nodes.”

Axie Infinityspun back up last week, and it's still relying on the Ronin sidechain, albeit with stricter security measures. The company raised its validator nodes to 11 in April, up from 9 previously, which makes it more difficult for attackers to gain control of the network. (Lazarus gained access to 5 nodes to achieve its hack, including one from the Axie DAO [Decentralized Autonomous Organization].) And it's also implementing a "circuit-breaker" system to flag large withdrawals. 

While this hack was clearly meticulously planned and required a significant amount of technical skill, it ultimately hung on a classic vulnerability: social engineering. 

Engadget is a web magazine with obsessive daily coverage of everything new in gadgets and consumer electronics

Reddit and LinkedIn will fix clipboard snooping in their iOS apps

The clipboard privacy feature in iOS 14 is prompting more major developers to tone down their apps’ nosy behavior. To start, Reddit told The Verge in a statement that it would fix code in its iOS app that copies clipboard data with virtually every ke…
Engadget RSS Feed

Uber and LinkedIn attackers plead guilty to hacking and extortion

The hackers who infiltrated Uber's and LinkedIn-owned Lynda.com's Amazon web servers have pleaded guilty in California federal court to charges of computer hacking and extortion conspiracy. Canadian national Vasile Mereacre and Florida resident Brand…
Engadget RSS Feed

LinkedIn built a Tinder for business advice

The ability to swipe left and right to determine if you want to do business with someone is Tinder's signature feature. It's been copied by hundreds of imitators, but few would have expected the staid LinkedIn to be one of them. The Microsoft-owned p…
Engadget RSS Feed

Russia is blocking LinkedIn

While LinkedIn is still waiting for the ink to dry on Microsoft's $ 26.2 billion deal, the Russian government is gearing up to ban the professional networking site altogether. As the New York Times reports, a local court in Moscow has ruled that Linke…
Engadget RSS Feed