New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables

Read full story on The Hacker News
Share
New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables
AI disclosure

Summary

Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses, expose mapped ports, and exhaust NAT tables. Presented at Black Hat USA 2026, the research found affected behavior across independently developed implementations, including Windows and

Original reporting

Open original source

Related coverage

Read full article on The Hacker News

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.