IPV6 Networking feature affected by hackers to hijack software updates


  • Chinese threat actor Thewizards observed to run a slaac attack since 2022
  • The attack supplies painted software updates
  • Most victims are in China, Hong Kong, Philippines and UAE

A threat actor called Thewizards has run Slaac forfilling attacks to target organizations, Cyber ​​Security Scientists Eset has revealed, claiming the group is in line with the Chinese government.

In the campaign, the striker would use a tool called Spellbinder to send Fake Router Advertacing (RA) messages to their goals.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top