Exploring NATJack: How NAT Manipulation Breaks Network Trust w/ Malcolm Stagg, Synack Red Team episode artwork

EPISODE · Aug 6, 2026 · 39 MIN

Exploring NATJack: How NAT Manipulation Breaks Network Trust w/ Malcolm Stagg, Synack Red Team

from WE'RE IN! · host Ryan Rutan, Malcolm Stagg

In this episode of the We're In Podcast, host Ryan Rutan Synack's Sr Director of Community sits down with independent security researcher and Synack Red Team member Malcolm Stagg. Malcolm breaks down his origin story-from software engineering at Microsoft and DARPA hardware challenges to discovering NATJack, a novel class of network address translation (NAT) manipulation attacks. Learn how attackers can hijack DNS and TCP sessions, bypass container isolation, and exploit Linux Netfilter flaws-plus practical mitigations you can implement today. Learn more about NATJack mitigations & research: https://natjack.io Join the Synack Red Team: https://www.synack.com/red-team/ Chapters: 00:00 - Introduction: Welcome to the We're In Podcast 02:27 - Breaking Hardware: The DARPA SSITH Challenge 06:02 - AI in Cybersecurity: Promise, Limits, and Triage Fatigue 08:44 - Introducing NATJack: Exploit Assumptions in NAT Tables 17:20 - Why NAT is Everywhere: Hypervisors, Containers, & Cloud 22:29 - Extending Attacks to TCP Connections & Session Hijacking 27:25 - DoS & Port-Scanning Vectors via Router Assignment Habits 30:39 - The Limits of Modern Infrastructure 34:34 - How to Mitigate NATJack: Strong Encryption, RPF, & Sockets 37:48 - Where to Learn More & Closing Remarks Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.

Episode metadata supplied by the publisher feed · Published Aug 6, 2026

Embed this episode

In this episode of the We're In Podcast, host Ryan Rutan Synack's Sr Director of Community sits down with independent security researcher and Synack Red Team member Malcolm Stagg. Malcolm breaks down his origin story-from software engineering at Microsoft and DARPA hardware challenges to discovering NATJack, a novel class of network address translation (NAT) manipulation attacks. Learn how attackers can hijack DNS and TCP sessions, bypass container isolation, and exploit Linux Netfilter flaws-plus practical mitigations you can implement today.

Distinct summary based on available episode metadata or transcript content.

NOW PLAYING

Exploring NATJack: How NAT Manipulation Breaks Network Trust w/ Malcolm Stagg, Synack Red Team

0:00 39:14

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of WE'RE IN!?

This episode is 39 minutes long.

When was this WE'RE IN! episode published?

This episode was published on August 6, 2026.

Can I download this WE'RE IN! episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!