Apple Patches Critical macOS Screen Sharing Vulnerability (CVE-2026-65400, CVSS 9.8) Being Exploited for Crypto Mining

According to NCSC and The Hacker News, Apple patched a critical authentication vulnerability in macOS screen sharing on August 6 through emergency updates to macOS Tahoe 26.6.1, Sequoia 15.7.9, and Sonoma 14.8.9. CVE-2026-65400 (CVSS 9.8) allows attackers without valid credentials to access Macs exposed to the internet on port 5900 and deploy Monero mining software. NCSC confirmed multiple active attacks where attackers gained root access and installed cryptocurrency mining programs. The vulnerability required improved credential verification through enhanced state management. Users are advised to update systems immediately or disable screen sharing if updates are not available.
Disclaimer: The information on this page may come from third-party sources and is for reference only. It does not represent the views or opinions of Gate and does not constitute any financial, investment, or legal advice. Virtual asset trading involves high risk. Please do not rely solely on the information on this page when making decisions. For details, see the Disclaimer.
Comment
0/400
No comments