# Worth Reading: NatJack

DevFeed: [Worth Reading: NatJack](<https://devfeed.tech/articles/worth-reading-natjack-11440.md>)

Original publisher: [Read original article](<https://blog.ipspace.net/2026/09/worth-reading-natjack-nat-security/>)

Published: 2026-09-11T07:02:00Z

Content type: opinion

Language: en

Sources: [ipSpace.net blog](<https://devfeed.tech/sources/ipspace-net-blog.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>)

Tags: [attacks](<https://devfeed.tech/tags/attacks.md>), [nat](<https://devfeed.tech/tags/nat.md>), [security](<https://devfeed.tech/tags/security.md>), [worth-reading](<https://devfeed.tech/tags/worth-reading.md>)

## AI overview

The article recommends NatJack, a website documenting several attacks against typical NAT implementations. It argues that NAT should not be treated as a security feature and dismisses common objections to that conclusion.

## Source excerpt

Every time I wrote something along the lines of NAT is not a security feature, I got the expected pushback from people defending their bad suboptimal design choices. Fortunately, rational1 engineers no longer need to have that discussion: the NatJack website documents2 a half-dozen attacks on typical NAT implementations. Obvious next step: coping mechanisms like "this is all theoretical", like the "but the remote host cannot reply" argument made 23 years after the Slammer worm 🤦♂. Read more ...