SECURITY·중요도 8·2026. 08. 07.·The Hacker News

New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables

── KO ──────────────────

NatJack 공격 방법이 NAT 테이블을 조작하여 TCP 세션을 탈취하는 새로운 방식으로 공개되었습니다.

보안 연구자 말콤 스태그가 NAT 테이블을 조작하여 TCP 세션을 탈취하고 DNS 응답을 스푸핑하는 새로운 공격 기법인 NatJack을 공개했습니다. 이 연구는 Black Hat USA 2026에서 발표되었으며, Windows를 포함한 여러 독립적으로 개발된 구현에서 영향을 발견했습니다. 이러한 취약점은 NAT 테이블을 소모하고 맵핑된 포트를 노출시킵니다.


── EN ──────────────────

NatJack attacks manipulate NAT tables to hijack TCP sessions and spoof DNS responses.

Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates NAT connection state to hijack active TCP sessions and spoof DNS responses. This research was presented at Black Hat USA 2026 and found affected behavior across independently developed implementations, including Windows. The vulnerabilities can also exhaust NAT tables and expose mapped ports.

원문 보기 →목록으로