Vulnerability giving attackers full control of Macs is under active exploitation
摘要
荷兰国家网络安全中心警告称,一个允许攻击者执行恶意代码的高危macOS漏洞正被积极利用。该漏洞编号为CVE-2026-65400,源于屏幕共享功能的状态管理缺陷,严重性评分为7.1分。攻击者可通过互联网访问5900端口,在受影响系统上获取root权限并植入门罗币挖矿程序。苹果已针对macOS Tahoe、Sequoia和Sonoma发布安全更新。
Dutch officials have warned that a high-severity macOS vulnerability that allows attackers to execute malicious code is under active exploitation.
“The NCSC has received a notification indicating that active abuse of this vulnerability has been observed on multiple systems on which port 5900 was accessible from the Internet,” the Netherlands National Cyber Security Centrum warned earlier this week. “In all these cases, root had been accessed on the affected system and a Monero crypto miner had been placed.”
Do you know if your screen sharing is on?
The vulnerability, tracked as CVE-2026-65400, received a patch from Apple last week for macOS Tahoe, Sequoia, and Sonoma. The vulnerability, with a severity rating of 7.1 out of 10, stems from a bug in the macOS screen sharing capability, which allows a remote party to view the screen and control the keyboard and mouse while a machine is turned on. A flaw in the “state management,” which keeps track of preceding events, user interactions, variables, and other system states, is the underlying cause.
转载信息
评论 (0)
暂无评论,来留下第一条评论吧