Truffle Security, creators of the new XSS Hunter tool that detects bugs and security vulnerabilities, elicited concern by allegedly inspecting sensitive user data. The company tweeted statistics about vulnerabilities it found, leading to accusations of infringing user privacy. Truffle swiftly deleted the tweet and defended its practice, claiming the reports viewed by employees were anonymised.

North Korean Hackers Use Fake U.S. Companies to Spread Malware in Crypto Industry: Report
North Korean hackers reportedly set up shell companies in the US to penetrate the crypto sector and target developers via fake job offers, according to