High 8.3
CVE-2026-56181
NatJack Attack Class Disclosed at Black Hat USA 2026
Vendor / product: Microsoft Windows NAT (Hyper-V), Linux Netfilter conntrack
Event date: 2026-08-06
Public PoC: Yes
First tracked by RiskWire: 2026-07-28
Sources & citations (6)
- New NatJack NAT Attack Lets Hackers Hijack TCP Connections and DNS Responses gbhackers.com · 2026-08-07
- New NatJack Research Exposes Design Weaknesses Across Major NAT Implementations globenewswire.com · 2026-08-06
- Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access thehackernews.com · 2026-08-07
- NatJack Attack Lets Any Co-Tenant Hijack Sessions: No Patch Closes Design Flaw techtimes.com · 2026-08-07
- New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables thehackernews.com · 2026-08-07
- NatJack exploits put NAT security assumptions to the test at Black Hat csoonline.com · 2026-08-06
References
See CVE-2026-56181 in context
RiskWire tracks every exploited CVE this week, cross-referenced against CISA KEV with federal remediation deadlines. Filtered to your vendor stack.
Book a 20-min demo →