CyberSecurity News
Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access
AI summary
A security researcher has revealed a new attack class called NatJack, which exploits network address translation connection state. This attack can hijack active TCP sessions, spoof DNS responses, and disclose victim IP addresses and mapped ports. Additionally, it can exhaust NAT tables, allowing for further malicious activity. The researcher demonstrated these techniques across various network infrastructure devices at Black Hat USA 2026. The attack class poses a significant threat to network security.
Countries in focus
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.

