tradingkey.logo
tradingkey.logo
ค้นหา

Kerberus Report Warns Real-Time Protection Lags as Human-Targeted Scams Surge

Cryptopolitan18 พ.ย. 2025 เวลา 10:51
facebooktwitterlinkedin
ดูความคิดเห็นทั้งหมด0

A new industry report released this week shows that human-targeted attacks – rather than technical vulnerabilities – are responsible for the majority of Web3 losses, despite record levels of security spending across the sector.

The report, The Human Factor: Why Real-Time Protection Is the Missing Layer in Web3 Security, published by security firm Kerberus, estimates that more than $3.1 billion was stolen through hacks and scams between January and June 2025. Of that, over $600 million came from phishing, wallet compromise and social engineering incidents that targeted users directly rather than exploiting blockchain code.

The figures include the $1.46 billion Bybit exchange breach, the largest crypto heist to date. Kerberus notes that even when excluding the Bybit incident as an outlier, human-targeted attacks remain a significant source of losses across the ecosystem.

The report highlights what Kerberus describes as a fundamental resource-allocation failure across the Web3 security sector. According to the company’s analysis, most security spending still flows into tools that operate either before an attack occurs – such as audits and vulnerability testing – or after funds have already been stolen, including forensics and incident response. Kerberus argues that this leaves a critical gap during the short window in which users approve transactions, a moment attackers increasingly exploit because it remains largely undefended. Despite rising losses tied to phishing, wallet drainers, and social engineering, real-time protection still accounts for only a small share of available solutions.

Key findings from the report

According to the research:

  • 44% of crypto thefts stem from private key mismanagement.
  • 60% of wider cybersecurity breaches involve human error.
  • 90% of exploited smart contracts had passed security audits before being attacked.
  • Phishing click-through rates remain between 7–15%, even after security training.

The report suggests that these patterns continue because most Web3 security spending is directed toward code auditing and post-incident analysis, while attackers increasingly focus on manipulating users during wallet interactions.

Kerberus’ leadership team notes that the majority of existing tools function entirely outside the transaction window. These systems play an important role in keeping code safe and analysing breaches, but they don’t interpret user intent or scan live transactions at the wallet level. Kerberus points out that delivering this type of protection requires sophisticated real-time detection infrastructure capable of running deep scans in under a second without disrupting the user experience — a technically demanding challenge that explains why only a small minority of providers currently offer true real-time defences.

Real-time protection remains limited

Kerberus reviewed 61 active Web3 security providers and found that:

  • 87% operate preventatively focusing on audits or post-incident forensics
  • Only 13% provide real-time, transaction-level defences that can block malicious actions before approval.

The report states that this distribution helps explain why losses remain high even as the number of “real-time” solutions increases: many providers market real-time features, but few deliver transaction blocking at the wallet level.

Examples cited in the report

One case highlighted involves an American investor who lost $330 million in Bitcoin after being manipulated in a phone-based social engineering attack, despite keeping funds secure for years. Another section points to compromised websites, hacked social media accounts, and manipulated Discord servers as growing channels for wallet-draining schemes.

Implications for the sector

The authors argue that the current model – where users are expected to independently evaluate risks, verify links, and recognise phishing attempts- creates predictable failure points. Frequent security prompts, they note, can lead to “alert fatigue,” making users more likely to approve malicious transactions.

The report concludes that wider adoption of real-time, automated transaction screening is crucial to reduce losses and support mainstream use of Web3 platforms.

ข้อจำกัดความรับผิดชอบ: ข้อมูลที่ให้ไว้บนเว็บไซต์นี้มีไว้เพื่อวัตถุประสงค์ทางการศึกษาและให้ข้อมูลเท่านั้น และไม่ควรถือเป็นคำแนะนำทางการเงินหรือการลงทุน

ความคิดเห็น (0)

คลิกปุ่ม $ ป้อนสัญลักษณ์ และเลือกเพื่อเชื่อมโยงหุ้น, กองทุน ETF หรือสัญลักษณ์หลักทรัพย์อื่น ๆ

0/500
แนวทางการแสดงความคิดเห็น
กำลังโหลด...

บทความแนะนำ

Goldman Sachs คาดว่าเศรษฐกิจอวกาศทั่วโลกจะมีมูลค่าถึง 1.8 ล้านล้านดอลลาร์ภายในปี 2035: หุ้นตัวใดน่าจับตามอง?

TradingKey - การคาดการณ์ล่าสุดของโกลด์แมน แซคส์ ระบุว่า เศรษฐกิจอวกาศโลกอาจมีมูลค่าสูงถึง 1.8 ล้านล้านดอลลาร์ภายในปี 2035 นอกจากนี้ ธนาคารยังชี้ว่า การระดมทุนในตลาดทุนที่เพิ่มขึ้นอาจช่วยขับเคลื่อนการควบรวมและซื้อกิจการ (M&A) รวมถึงการรวมตัวในอุตสาหกรรมเพิ่มเติม เนื่องจากเศรษฐกิจอวกาศกำลังค่อย ๆ เปลี่ยนผ่านจากการลงทุนเชิงธีมที่มีความผันผวนสูง ไปสู่การลงทุนภาคอุตสาหกรรมที่ขับเคลื่อนโดยดาวเทียมเชิงพาณิชย์ ความต้องการด้านการป้องกันประเทศ โครงสร้างพื้นฐานการสื่อสาร และบริการนำส่งอวกาศ

พรีวิวผลประกอบการไตรมาส 2 ของ Nvidia: อัตรากำไรขั้นต้นและ Rubin คือกุญแจสำคัญสู่การเบรกเอาท์ หลังจากราคาหุ้นปรับตัวลดลงหลังรายงานผลประกอบการติดต่อกัน 4 ไตรมาส

Nvidia (NVDA) มีกำหนดจะรายงานผลประกอบการทางการเงินประจำไตรมาสที่ 2 ของปีงบประมาณ 2027 หลังตลาดปิดทำการในวันที่ 26 สิงหาคม ตามเวลาตะวันออก ขณะนี้วอลล์สตรีทคาดการณ์กันอย่างแพร่หลายว่าบริษัทจะยังคงรักษาแบบแผน "การทำผลงานได้ดีกว่าคาดและปรับเพิ่มแนวโน้มผลการดำเนินงาน" ต่อไป อย่างไรก็ตาม ท่ามกลางภาวะที่มูลค่าหุ้นอยู่ในระดับสูงและความคาดหวังที่เพิ่มมากขึ้น เพียงแค่รายได้ที่ออกมาดีกว่าคาดอาจไม่เพียงพอที่จะผลักดันให้ราคาหุ้นปรับตัวสูงขึ้น

【ก่อนเปิดตลาดสหรัฐฯ】ทองคำทะลุ 4,500 ดอลลาร์, บิตคอยน์พุ่งทะลุ 72,000 ดอลลาร์, หุ้นคริปโทฯ พุ่งขึ้นขณะที่ MSTR บวกกว่า 10%, COIN ปรับขึ้นกว่า 7%

TradingKey - ในวันพฤหัสบดี (20 สิงหาคม) ตามเวลาฝั่งตะวันออกของสหรัฐฯ สัญญาฟิวเจอร์สดัชนีหุ้นหลักทั้งสามของสหรัฐฯ ปรับตัวลดลงถ้วนหน้าในการซื้อขายช่วงก่อนเปิดตลาด แม้ว่าการขยายการซื้อคืนพันธบัตรรัฐบาลระยะยาวของกระทรวงการคลังสหรัฐฯ จะช่วยบรรเทาแรงกดดันในตลาดพันธบัตรได้ชั่วคราว แต่โมเมนตัมแรงซื้อก็เริ่มชะลอตัวลงหลังจากนั้น ในขณะเดียวกัน สัญญาณสายเหยี่ยวจากรายงานการประชุมเดือนกรกฎาคมของธนาคารกลางสหรัฐฯ (เฟด) และราคาน้ำมันที่พุ่งขึ้นสู่ระดับสูงสุดในรอบเกือบ 4 สัปดาห์ ได้จำกัดการฟื้นตัวของบรรยากาศการเปิดรับความเสี่ยงในตลาด ทั้งนี้ การที่บิตคอยน์ทะลุระดับ 70,000 ดอลลาร์ ได้ช่วยหนุนหุ้นที่เกี่ยวข้องกับคริปโทเคอร์เรนซีในการซื้อขายช่วงก่อนเปิดตลาด ซึ่งช่วยให้สัญญาฟิวเจอร์สดัชนี Nasdaq มีความยืดหยุ่นและประคองตัวได้ดีกว่าเมื่อเปรียบเทียบกัน
tradingkey.logo
คำเตือนความเสี่ยง: เว็บไซต์และแอปพลิเคชันมือถือของเราให้ข้อมูลทั่วไปเกี่ยวกับผลิตภัณฑ์การลงทุนบางประเภทเท่านั้น Finsights ไม่ได้ให้คำแนะนำทางการเงินหรือการแนะนำผลิตภัณฑ์การลงทุนใด ๆ และการให้ข้อมูลดังกล่าวไม่ควรถูกตีความว่าเป็นการให้คำแนะนำทางการเงินหรือการแนะนำโดย Finsights
ผลิตภัณฑ์การลงทุนมีความเสี่ยงด้านการลงทุนอย่างมาก รวมถึงการสูญเสียเงินต้นที่ลงทุนไป และอาจไม่เหมาะสำหรับทุกคน ผลการดำเนินงานในอดีตของผลิตภัณฑ์การลงทุนไม่ได้บ่งบอกถึงผลการดำเนินงานในอนาคต
Finsights อาจอนุญาตให้ผู้ลงโฆษณาหรือพันธมิตรบุคคลที่สามวางหรือส่งโฆษณาบนเว็บไซต์หรือแอปพลิเคชันมือถือของเราหรือส่วนใดส่วนหนึ่งของเว็บไซต์หรือแอปพลิเคชันมือถือ และอาจได้รับค่าตอบแทนจากการที่คุณมีปฏิสัมพันธ์กับโฆษณา
© ลิขสิทธิ์: FINSIGHTS MEDIA PTE. LTD. สงวนลิขสิทธิ์ทุกประการ