Back to all news
Security

Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access

The Hacker News·August 7, 2026·1 min read
Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access

Security researcher Malcolm Stagg disclosed a new attack class called NatJack at Black Hat USA 2026. The technique manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses, disclose victim IP addresses and mapped ports, and exhaust NAT tables. Demonstrations were conducted across network infrastructure devices, highlighting significant risks to network security.

Read at The Hacker News
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store