Bullish
macOS Screen Sharing Flaw Fixed After Wild Exploitation for Crypto Mining
21:17
Critical CVE-2026-65400 vulnerability in macOS screen sharing allowed unauthorized root access and Monero mining deployment. Apple issued urgent patches; AI accelerated exploit development to four hours.
Woofun AI reports that the Dutch National Cyber Security Centre warned of active exploitation of a severe authentication flaw in macOS screen sharing, identified as CVE-2026-65400 with a CVSS score of 9.8. Attackers accessed internet-exposed Macs on port 5900 without credentials to install Monero mining software, achieving root access in multiple incidents. Apple deployed urgent fixes on August 6 through macOS Tahoe 26.6.1, Sequoia 15.7.9, and Sonoma 14.8.
9, enhancing status management and credential verification. Security researcher @osxreverser disclosed a related pre-authentication bypass in the same component, also resolved in version 26.6, which permits access using only the target IP address. Calif researchers utilized AI to generate exploit scripts for both vulnerabilities within four hours, highlighting reduced time from discovery to attack code creation. Users are advised to update immediately or disable screen sharing if updates are unavailable.
WOOFUN AI
Impact Assessment · Quick Read
The rapid exploitation of this high-severity flaw underscores the growing threat of AI-accelerated cyberattacks against consumer hardware. With attackers achieving root access to deploy cryptocurrency miners, the incident highlights significant risks for unpatched macOS users exposed to the internet. The four-hour development timeline for exploits suggests that future vulnerability windows may shrink further, necessitating immediate patch adoption by enterprise and individual users alike.
Generated by WOOFUN AI · For reference only, not investment advice
Comments
No comments yet.