Hackers Are Abusing a macOS Screen Sharing Flaw to Secretly Mine Monero
The Dutch cyber agency says attackers exploited an authentication flaw in macOS Screen Sharing to gain root access and plant Monero miners, with public proof-of-concept code now circulating.
We haven't written up this one. Decrypt has the full story — the link below goes straight to it.
This story
This is one outlet's version. Read the fullest account.
- macOS Screen Sharing CVE-2026-65400: Authentication Bypass Leads to Root Access and Monero Miner Installation dev.to
- Critical macOS Screen Sharing flaw gives attackers remote root access — CISA bumps bug to 9.8 severity following active Monero cryptojacking attacks tomshardware.com
- Hackers exploited macOS Screen Sharing flaw to install Monero miners, Dutch cyber agency says theblock.co