Tech

IPv6 networking feature hit by hackers to hijack software updates

Share
Share


  • Chinese threat actor TheWizards observed running a SLAAC attack since 2022
  • The attack delivers tainted software updates
  • Most victims are in China, Hong Kong, the Philippines, and UAE

A threat actor called TheWizards has been running SLAAC spoofing attacks to target organizations, cybersecurity researchers ESET have revealed, claiming the group is aligned with the Chinese government.

In the campaign, the attackers would use a tool called Spellbinder to send fake Router Advertisement (RA) messages to their targets.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Exploring the ‘Jekyll-and-Hyde tipping point’ in AI
Tech

Exploring the ‘Jekyll-and-Hyde tipping point’ in AI

Attention head (‘AI’) shown in basic form, generates a response to a...

Computer scientists create algorithm to protect videos from quantum hacking
Tech

Computer scientists create algorithm to protect videos from quantum hacking

Credit: Unsplash/CC0 Public Domain Researchers at FIU’s College of Engineering and Computing...