AUTO-UPDATED

Apple's macOS Screen Sharing Flaw Is Being Exploited in the Wild

Apple has released urgent security updates for macOS after reports confirmed that hackers are actively exploiting a screen sharing vulnerability to install unauthorized cryptocurrency mining software on devices.

Key Points

  • Apple patched a critical authentication flaw in macOS Tahoe, Sonoma, and Sequoia that allowed unauthorized remote access to screens, keyboards, and mice.
  • The Netherlands' National Cyber Security Center confirmed the vulnerability is being exploited on systems with port 5900 exposed to the internet.
  • Attackers are using the flaw to gain root access and install Monero cryptocurrency miners on compromised Mac computers.
  • Apple addressed the issue through improved state management and urges all users to install the latest software updates immediately.
  • Security experts recommend using a VPN when screen sharing is active to provide an additional layer of protection against unauthorized access.

Why it Matters

This exploit highlights the significant risks associated with leaving default ports exposed on internet-connected devices. Users must prioritize system updates to prevent attackers from hijacking hardware resources for malicious activities like unauthorized cryptocurrency mining.
MacRumors Published by Tim Hardwick
Read original