Apple macOS Screen Sharing Flaw Exploited for Monero Miner
TL;DR. A macOS screen sharing vulnerability has been actively exploited to install a Monero cryptocurrency miner on internet-exposed Macs. - The exploit leverages default configurations or user-enabled screen sharing to gain unauthorized access. - Attackers use reverse shells and persistence mechanisms to maintain control and deploy the mining malware. - The flaw underscores the importance of securing remote access services and monitoring network exposure.
- An Apple macOS vulnerability involving Screen Sharing has been actively exploited.
- The flaw allows attackers to install Monero cryptocurrency mining malware on affected Macs.
- Exploitation targets internet-exposed macOS devices with Screen Sharing enabled, often using default VNC configurations.
- Attackers gain initial access, establish persistence, and deploy a Monero miner.
- The attack highlights the risks associated with unpatched systems and inadequately secured remote access services.
Sources
- Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner — thehackernews.com
- macrumors.com — macrumors.com