CVE-2026-65400critical
macOS Screen Sharing Flaw Exploited to Deploy Monero Miners
Hackers are actively exploiting a critical vulnerability in macOS's Screen Sharing feature to gain root access and deploy Monero cryptocurrency miners. The flaw, which allows attackers to bypass authentication without valid credentials, is being exploited on Macs with port 5900 exposed to the internet. Apple has released patches for this issue, but exploitation was observed shortly after the fix was deployed.