Vulnerability giving attackers full control of Macs is under active exploitation
Summary
A security flaw in macOS screen sharing lets hackers take full control of Macs if they can access a specific network port. Dutch officials warn this flaw is actively used to install cryptocurrency mining software, but Apple has released a fix that users should install.Key Facts
- The flaw affects macOS versions Tahoe, Sequoia, and Sonoma.
- It lets attackers see the screen and control the keyboard and mouse remotely.
- The vulnerability has a severity score of 7.1 out of 10.
- Active attacks happen when port 5900 is open to the Internet, which happens if screen sharing is on.
- Attackers have used the flaw to install Monero cryptocurrency miners on affected Macs.
- Apple released a security update last week to fix the bug.
- Experts advise users to keep screen sharing off unless needed and use safer methods like VPN or SSH tunneling.
- The flaw could potentially be used for more serious attacks beyond cryptocurrency mining.
Read the Full Article
This is a fact-based summary from The Actual News. Click below to read the complete story directly from the original source.