Close Menu
Daily Guardian
  • Home
  • News
  • Politics
  • Business
  • Entertainment
  • Lifestyle
  • Health
  • Sports
  • Technology
  • Climate
  • Auto
  • Travel
  • Web Stories
What's On

Transit, home care and immigration dominate Day 3 of Quebec election

August 29, 2026

Vicariously hike the Appalachian Trail in the gorgeous A Trail Tale

August 29, 2026

Byelection called as B.C. Conservative leader faces questions over leaked audio

August 29, 2026

Alberta Premier Danielle Smith to meet with U.S. officials amid trade war

August 29, 2026

Ford says world will always ‘call it Lake Ontario’ after Trump’s renaming

August 29, 2026
Facebook X (Twitter) Instagram
Finance Pro
Facebook X (Twitter) Instagram
Daily Guardian
Subscribe
  • Home
  • News
  • Politics
  • Business
  • Entertainment
  • Lifestyle
  • Health
  • Sports
  • Technology
  • Climate
  • Auto
  • Travel
  • Web Stories
Daily Guardian
Home » New NatJack Research Exposes Design Weaknesses Across Major NAT Implementations
Press Release

New NatJack Research Exposes Design Weaknesses Across Major NAT Implementations

By News RoomAugust 6, 20264 Mins Read
New NatJack Research Exposes Design Weaknesses Across Major NAT Implementations
Share
Facebook Twitter LinkedIn Pinterest Email

REDWOOD CITY, Calif., Aug. 06, 2026 (GLOBE NEWSWIRE) — Synack, the AI + human penetration testing platform for continuous security validation, today announced new research from Synack Red Team member Malcolm Stagg revealing NatJack, a class of attacks that exploits long-held trust assumptions in network address translation implementations. Stagg presented the findings today at Black Hat USA 2026. Testing identified affected behavior across independently developed implementations, including Windows, Linux and macOS, and two CVEs have been assigned to date.

Stagg conducted the research over several years and is jointly crediting Synack Red Team along with his own research handle Sodium-24, of SODIUM-24, LLC. The research identifies four distinct techniques attackers can use against NAT devices: hijacking active TCP connections, poisoning DNS responses, identifying the ports assigned to other connections, and forcing denial of service by exhausting a device’s NAT table. Two CVEs have been assigned to date (CVE-2026-56181, affecting Microsoft Windows NAT in Hyper-V, and CVE-2026-63913, affecting the Linux netfilter conntrack subsystem). Additional vendor advisories or CVE assignments may follow as coordinated disclosure continues. Independent testing found the underlying flaw present across NAT implementations from multiple vendors using entirely independent codebases, including Windows, Linux, and macOS.

Unlike vulnerabilities tied to a specific coding error, NatJack stems from a design assumption, that devices sharing a NAT table can trust one another, that held for most of the internet’s history but no longer holds under adversarial conditions. Because the flaw is behavioral rather than signature-based, it may not show up in conventional automated scanning.

“Malcolm’s research on NatJack shows why effective security testing must challenge long-held design assumptions, not only search for familiar software flaws,” said Mark Kuhr, co-founder and CTO of Synack. “That depth of human creativity is central to the Synack Red Team. We’re proud to support Malcolm’s research and help defenders understand and address the risk.”

There is no single patch for NatJack. Available fixes, including a Linux kernel patch (kernel 6.6.142 and higher) and a FreeBSD update (15.0 and higher), raise the difficulty of exploitation but do not close the underlying design gap. Synack expects remediation to unfold incrementally across vendors over an extended period, and recommends organizations prioritize encrypting traffic (including internally), segmenting untrusted workloads away from trusted ones, and enabling protections such as IP Source Guard in the interim. Full technical details and mitigation guidance are available in Synack’s security research report on NatJack.

Malcolm Stagg’s path to the Synack Red Team

Stagg joined the Synack Red Team in 2020 following his performance in DARPA’s Finding Exploits to Thwart Tampering hardware bug bounty. His previous research includes a Microsoft Remote Desktop Client RCE, CVE-2021-34535, and Google Chrome extension vulnerability CVE-2024-0333. Stagg discussed his NatJack research and path to the SRT on Synack’s We’re In podcast.

Session Details

Malcolm Stagg, Researcher, Synack Red Team, Independent Researcher, SODIUM-24, LLC
Breaking Trust Boundaries: Exploiting Design Assumptions in Network Infrastructure
Black Hat USA, Thursday, August 6, 10:15 a.m. PT (Oceanside D, Level 2)

About Synack

Synack is the AI + human penetration testing platform for continuous security validation. Sara AI Pentesting combines agentic AI with the Synack Red Team, a rigorously vetted global community of security researchers, to expand testing coverage and prove real-world exploitability. The Synack Platform gives organizations control and visibility across testing activity, validated findings and remediation status. Synack supports point-in-time and continuous penetration testing across web applications, APIs, mobile applications, cloud and host infrastructure, internal environments and AI or LLM systems. Founded by former NSA operatives, Synack has enabled nearly 10 million hours of security testing to protect critical assets across enterprise, public-sector and highly regulated environments. Learn more at synack.com and on LinkedIn.

Media Contact
Katy Nally
Senior Content Marketing Manager
[email protected]

A photo accompanying this announcement is available at https://www.globenewswire.com/NewsRoom/AttachmentNg/4f623f0c-7dac-4c9c-a964-35fea0d101db

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Keep Reading

Apeing Set to Launch Its Upcoming Crypto Presale in the First Week of September Amid BTC’s 26% Rally and Rising Bullish Sentiment

20 Years of ITE HCMC – Vibrant Connections – Global Destinations

₹500/Month Wardrobe Rentals Launched by Rentomojo in Hyderabad, Mumbai and Pune – ₹30,000 Wardrobe Ownership Costs Push Households Toward Monthly Rental Plans in 2026

Dining Table, Study Table and Coffee Table Rentals From Rentomojo Gain Ground Across Indian Cities in 2026

Crypto News Today: AlphaPepe Nears Fourth CEX Reveal as the Ethereum Price Prediction Targets $12,000

360in360 Living Memories Adds Audiobook and Voice-Preservation Capability

XcanMow Mix 2000 Robot Mower Makes Its European Debut at IFA Berlin 2026

JETOUR T2 Takes on the Brazilian Wilderness in a Real-World Off-Road Test

Stetson University Again Named National College of Distinction for 2026-2027

Editors Picks

Vicariously hike the Appalachian Trail in the gorgeous A Trail Tale

August 29, 2026

Byelection called as B.C. Conservative leader faces questions over leaked audio

August 29, 2026

Alberta Premier Danielle Smith to meet with U.S. officials amid trade war

August 29, 2026

Ford says world will always ‘call it Lake Ontario’ after Trump’s renaming

August 29, 2026

Latest News

Apeing Set to Launch Its Upcoming Crypto Presale in the First Week of September Amid BTC’s 26% Rally and Rising Bullish Sentiment

August 29, 2026

Distraction-free writing gadget BYOK is adding custom extensions

August 29, 2026

One Toronto man’s mission to cook for the city’s hungry

August 29, 2026
Facebook X (Twitter) Pinterest TikTok Instagram
© 2026 Daily Guardian Canada. All Rights Reserved.
  • Privacy Policy
  • Terms
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.

Go to mobile version