Back
Tom's Hardware9 d ago

Critical macOS Screen Sharing Flaw Exploited for Cryptojacking

A severe security vulnerability in macOS Screen Sharing, identified as CVE-2026-65400, is being actively exploited by attackers to gain remote root access. The CISA has assigned a critical 9.8 severity score to this flaw, which is reportedly enabling Monero cryptojacking attacks.

Critical macOS Screen Sharing Flaw Exploited for Cryptojacking

A significant security flaw within macOS Screen Sharing, designated CVE-2026-65400, has been identified and is currently under active exploitation by malicious actors. This critical vulnerability allows attackers to bypass authentication protocols, granting them unauthorized remote root access to affected macOS systems. The severity of this issue has prompted the U.S. Cybersecurity and Infrastructure Security Agency (CISA) to issue a high-priority alert, rating the bug with a critical 9.8 on its severity scale.

Affiliate content
Instant Gaming

Games up to -90% off

Instant key delivery on Instant Gaming

Browse deals →

Reports from the Dutch National Cyber Security Centre (NCSC-NL) indicate that this flaw is being leveraged in real-world attacks, specifically for Monero cryptojacking. In these attacks, threat actors covertly install cryptocurrency mining software on compromised Macs, using the victims' computational resources to generate Monero for their own profit. This not only burdens the affected systems with increased processing load and energy consumption but also poses a significant privacy and security risk as attackers gain deep access.

Users of macOS are strongly advised to take immediate action to mitigate this threat. While official patches or detailed mitigation steps from Apple are anticipated, users should ensure their systems are updated to the latest available versions and consider restricting Screen Sharing access to trusted networks or disabling the service if not essential. The active exploitation underscores the urgency for robust security practices to protect against such sophisticated and impactful cyber threats.

Summary based on third-party reporting.

Original source: Tom's Hardware

Recommended

Eintracht Frankfurt and Fire Flux Esports Secure VCT EMEA Stage 2 Playoff Spots
Dot Esports8 d ago

Eintracht Frankfurt and Fire Flux Esports Secure VCT EMEA Stage 2 Playoff Spots

Challenger-league teams Eintracht Frankfurt and Fire Flux Esports have fought their way into the VCT EMEA Stage 2 playoffs, overcoming a challenging Play-Ins bracket. They will now join six established VCT partner teams in the next stage of competition, set to kick off on August 20th.

Read article
Future Pixel Phones Could Get AI-Powered Battery Usage Summaries
Android Authority8 d ago

Future Pixel Phones Could Get AI-Powered Battery Usage Summaries

Upcoming Pixel devices may soon feature an advanced battery usage summary, leveraging Google's Gemini Nano AI to analyze individual power consumption patterns locally. This innovation aims to provide more intelligent and personalized insights into how users expend their device's battery life.

Read article
Android 17 QPR2 Beta 3 Delivers a Rich Array of New Features
Android Authority8 d ago

Android 17 QPR2 Beta 3 Delivers a Rich Array of New Features

The latest Android 17 QPR2 Beta 3 update is surprisingly robust, introducing a host of new functionalities and security enhancements to Pixel devices. Among the highlights are advanced protections against call-forwarding scams and a convenient Quick Settings layout editor.

Read article
Loyal Feedly User Finds Minimalist RSS Reader Replacements on Android
Android Authority8 d ago

Loyal Feedly User Finds Minimalist RSS Reader Replacements on Android

After a decade of relying on Feedly, a seasoned user discovered two free, minimalist RSS reader apps for Android that successfully replaced their long-standing news aggregator. These alternatives prioritize content over complex algorithms, offering a streamlined and peaceful reading experience.

Read article