HackerFeeds

CyberSecurity News

Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access

The Hacker News
· August 7, 2026

AI summary

A security researcher has revealed a new attack class called NatJack, which exploits network address translation connection state. This attack can hijack active TCP sessions, spoof DNS responses, and disclose victim IP addresses and mapped ports. Additionally, it can exhaust NAT tables, allowing for further malicious activity. The researcher demonstrated these techniques across various network infrastructure devices at Black Hat USA 2026. The attack class poses a significant threat to network security.

Countries in focus

Read the full article at The Hacker Newsthehackernews.com/2026/08/malware-can-abuse-windows-hello-for.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.