Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access

Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses, disclose victim IP addresses and mapped ports, and exhaust NAT tables.

Presented at Black Hat USA 2026, Stagg said the techniques were demonstrated across network infrastructure devices

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Coin-sized device can hack a Boeing 737

Coin-sized device can hack a Boeing 737 Source: Hacker News

Check Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCE

Check Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCE Check Point has patched two critical vulnerabilities in the way its firewall and management products handle VPN certificates. The

Attack Update: Top 5 Attack-IPs auf doode.info – 29.08.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 34.158.96.18 — 2533 requests (recent log) 89.167.35.212 — 1111 requests (recent log) 136.108.98.202 — 276 requests (recent