Apple patches critical Mac screen sharing flaw
Apple releases emergency fixes for MacOS Tahoe, Sonoma, and Sequoia...
Apple pushed out unexpected security updates for MacOS Tahoe, Sonoma, and Sequoia to address a critical vulnerability in the Screen Sharing feature. The flaw could allow attackers to authenticate without valid credentials, potentially granting unauthorized remote control of affected Macs. Apple did not report active exploitation but emphasized the urgency of the patch.
The Screen Sharing feature, introduced in MacOS Sonoma 2023, normally requires valid credentials for remote access. This vulnerability bypasses that requirement, enabling attackers to view files, modify settings, install malware, or enlist devices in botnets. The flaw is particularly dangerous on unprotected public networks where initial access could be easier to obtain.
- Apple released emergency patches for MacOS Tahoe 26.6.1, Sonoma 14.8.9, and Sequoia 15.7.9 to fix a Screen Sharing authentication bypass flaw
- The vulnerability allowed attackers to remotely control Macs without valid credentials, potentially accessing files, installing malware, or enlisting devices in botnets
- Apple did not report active exploitation but strongly recommends users update immediately via System Settings > General > Software Update
Why It Matters
This zero-day flaw in Apple's Screen Sharing could enable remote takeover of Macs, posing serious risks for remote workers and public network users.