Update your Mac: Screen Sharing vulnerability exploited in the wild
ID: 68a385ad-3efc-572b-bb5a-10a066cba9a2
STIX ID: report--68a385ad-3efc-572b-bb5a-10a066cba9a2
Feed Name: Malwarebytes Blog
Threat Score
The Dutch NCSC warns of active exploitation of CVE-2026-65400, an authentication-bypass in macOS Screen Sharing (port 5900) that can allow remote attackers to authenticate without credentials, gain root access, and install Monero cryptominers; Apple issued patches for Tahoe 26.6.1, Sequoia 15.7.9, and Sonoma 14.8.9 and users are advised to install updates or disable Screen Sharing/Remote Management if they cannot patch immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
