macOS Screen Sharing Flaw Exploited to Secretly Mine Cryptocurrency
The Dutch national cyber security agency has warned that attackers are actively exploiting an authentication vulnerability in Apple's macOS Screen Sharing feature. The flaw allows attackers to gain root-level access to affected Macs, giving them full control over the system.
Once inside, attackers are reportedly installing software that secretly mines Monero, a privacy-focused cryptocurrency, using the victim's computing resources without their knowledge. This type of attack, known as cryptojacking, can slow down systems, increase power consumption, and signal that a device has been fully compromised by an outside party.
Making matters worse, proof-of-concept code demonstrating how to exploit this flaw is now publicly available online, making it easier for less-skilled attackers to attempt similar attacks. Businesses using Mac devices for remote access or file sharing should be aware that Screen Sharing services could be a target until patched.