- Dev Notes
- Posts
- The $1.5B Bybit Hack: When Operational Security Becomes the Weak Link
The $1.5B Bybit Hack: When Operational Security Becomes the Weak Link
PLUS: Apple Pulls Advanced Data Protection Amid UK Government Demands


Good Morning! Crypto just took another hit—Bybit got drained for a whopping $1.5 billion, exposing some serious flaws in operational security rather than the usual smart contract exploits. Meanwhile, Apple is pulling back its Advanced Data Protection (ADP) in the UK after the government pushed for a backdoor, reigniting debates over privacy vs. surveillance. On a brighter note, Rust’s latest survey shows the language is gaining ground in workplaces, but developers are starting to feel the weight of its growing complexity.
The $1.5B Bybit Hack: When Operational Security Becomes the Weak Link

Context: On February 21, 2025, Bybit, a prominent cryptocurrency exchange, experienced a massive security breach, resulting in the theft of approximately $1.5 billion in Ethereum. This incident is now recognized as one of the largest digital heists in history. The attackers managed to compromise multiple signers' devices, manipulating wallet interfaces to collect necessary signatures under the guise of routine transactions.
What's New:
Operational Security Focus: Unlike previous hacks targeting smart contract vulnerabilities, this breach highlights a shift towards exploiting operational security weaknesses.
North Korean Involvement: Investigations suggest that North Korean state-sponsored groups, such as the Lazarus Group, may be behind this sophisticated attack.
Industry Implications: This event underscores the urgent need for enhanced security measures, including air-gapped signing systems and comprehensive transaction verification protocols.
This breach serves as a stark reminder that as the crypto industry evolves, so do the tactics of malicious actors. It's imperative for organizations to bolster their operational security frameworks to safeguard against such sophisticated threats.
Read More Here
Apple Pulls Advanced Data Protection Amid UK Government Demands

Context: Apple's Advanced Data Protection (ADP) was a game-changer when it launched in December 2022, offering end-to-end encryption for iCloud data like backups, photos, and notes. This meant that only you could access your data—Apple couldn't peek even if it wanted to. But as of February 21, 2025, UK users are seeing this feature vanish. Why? The UK government, under the Investigatory Powers Act of 2016, demanded a backdoor into encrypted data. Apple's response? A firm "no," leading to the removal of ADP for UK customers.
What's New:
Immediate Changes: New UK users can't enable ADP; existing users will soon need to disable it.
Data Still Protected: Services like iCloud Keychain, Health data, iMessage, and FaceTime remain end-to-end encrypted.
Global Impact: ADP remains available outside the UK, highlighting differing global stances on data privacy.
This move underscores the ongoing tug-of-war between user privacy and governmental surveillance. While Apple stands its ground on not creating backdoors, UK users are left with reduced control over their data security.
Read More Here
Rust 2024 Survey: More Workplace Adoption, But Is Complexity Creeping In?

The Rust Survey Team has unveiled the 2024 State of Rust Survey results, offering a snapshot of the language's current landscape. Conducted from December 5 to December 23, 2024, the survey gathered insights from 7,310 completed responses. While participation dipped compared to 2023—attributed to a shorter survey window—the data remains invaluable.
Key Findings:
Global Reach: Rust's community spans the globe, with top representation from the United States (22%), Germany (14%), and the United Kingdom (6%).
Workplace Adoption: Over half of respondents now use Rust regularly at work, with 34% employing it for the majority of their coding—a 5% increase from 2023.
Community Concerns: A growing number of users (43%) express concerns about Rust's increasing complexity, up 5% from the previous year.
These insights highlight Rust's expanding footprint in the tech world, both in personal projects and professional environments. However, the community remains vigilant about potential challenges, ensuring Rust evolves without unnecessary complexity.
Read More Here
🔥 More Notes
China Accelerates AI Infrastructure Development: China is fast-tracking its artificial intelligence infrastructure by collaborating with private tech firms to enhance state-owned data centers. This initiative aims to optimize AI chip clusters and solidify China's position in the global AI race.
Protests at OpenAI Headquarters: Three individuals were arrested during a protest outside OpenAI's San Francisco headquarters. Organized by the group Stop AI, the demonstration voiced concerns over the potential societal threats posed by advanced AI technologies.
Microsoft's Quantum Computing Claims Questioned: Microsoft's recent announcement of a quantum computing breakthrough involving Majorana particles has been met with skepticism. Physicists argue that the evidence is inconclusive, highlighting the challenges in validating such claims within the scientific community.
📹 Youtube Spotlight

Was this forwarded to you? Sign Up Here