🚨 Chinese APT group ‘TheWizards’ is exploiting IPv6 spoofing with a new tool called #Spellbinder to drop the WizardNet backdoor via hijacked software updates.
Read: https://hackread.com/chinese-thewizards-exploits-ipv6-wizardnet-backdoor/
🚨 Chinese APT group ‘TheWizards’ is exploiting IPv6 spoofing with a new tool called #Spellbinder to drop the WizardNet backdoor via hijacked software updates.
Read: https://hackread.com/chinese-thewizards-exploits-ipv6-wizardnet-backdoor/
TheWizards APT group uses SLAAC spoofing to perform adversary-in-the-middle attacks
#TheWizards #Spellbinder #WizardNet
https://www.welivesecurity.com/en/eset-research/thewizards-apt-group-slaac-spoofing-adversary-in-the-middle-attacks/