IPV6 Networking Fortunty Borca by hackers to kidnap software updates




  • The Chinese threat actor that Thewizards observed by directing a Slaac attack since 2022
  • The attack offers contaminated software updates
  • Most of the victims are in China, Hong Kong, the Philippines and Eau

A threat actor named Thewizards has been executing SLAAC falsification attacks to attack organizations, cybersecurity researchers that ESET revealed, claiming that the group is aligned with the Chinese government.

In the campaign, the attackers would use a tool called Spellbinder to send messages of false router ads (RA) to their goals.

Leave a Comment

Your email address will not be published. Required fields are marked *