{"id":266412,"date":"2026-08-18T02:37:09","date_gmt":"2026-08-18T02:37:09","guid":{"rendered":"https:\/\/www.europesays.com\/ro\/266412\/"},"modified":"2026-08-18T02:37:09","modified_gmt":"2026-08-18T02:37:09","slug":"atentie-un-bug-de-macos-permite-atacatorilor-sa-preia-controlul-de-la-distanta-fara-parola","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ro\/266412\/","title":{"rendered":"Atentie: un bug de macOS permite atacatorilor s\u0103 preia controlul de la distan\u021b\u0103, f\u0103r\u0103 parol\u0103"},"content":{"rendered":"<p><img loading=\"lazy\" data-od-removed-fetchpriority=\"high\" data-od-xpath=\"\/HTML\/BODY\/DIV[@id='td-outer-wrap']\/*[2][self::DIV]\/*[2][self::DIV]\/*[1][self::DIV]\/*[1][self::ARTICLE]\/*[1][self::DIV]\/*[1][self::DIV]\/*[3][self::DIV]\/*[1][self::DIV]\/*[2][self::DIV]\/*[2][self::DIV]\/*[5][self::DIV]\/*[3][self::DIV]\/*[1][self::FIGURE]\/*[1][self::IMG]\" decoding=\"async\" width=\"1024\" height=\"660\" src=\"https:\/\/www.europesays.com\/ro\/wp-content\/uploads\/2026\/08\/macbook-1024x660.jpg\" alt=\"Cine folose\u0219te un MacBook \u0219i are activ\u0103 op\u021biunea de screen share activ\u0103 cu diverse aplica\u021bii ar trebui s\u0103 \u0219tie c\u0103 e o problem\u0103 masiv\u0103, exploatat\u0103 activ de hackeri.\" class=\"wp-image-119638\"  \/>Cine folose\u0219te un MacBook \u0219i are activ\u0103 op\u021biunea de screen share activ\u0103 cu diverse aplica\u021bii ar trebui s\u0103 \u0219tie c\u0103 e o problem\u0103 masiv\u0103, exploatat\u0103 activ de hackeri.<\/p>\n<p class=\"wp-block-paragraph\">Utilizatorii de macOS trebuie s\u0103 \u0219tie c\u0103 \u00een sistemul de operare exist\u0103 o vulnerabilitate major\u0103 ce permite unui atacator s\u0103 se conecteze de la distan\u021b\u0103 \u0219i chiar s\u0103 execute code. Informa\u021bia vine din partea Netherlands National Cyber Security Centrum care avertizeaz\u0103 c\u0103 problema e deja exploatat\u0103 activ de atacatori, care \u00een toate cazurile analizate au ob\u021binut acces complet \u0219i au instalat minerul crypto Monero \u0219i c\u0103 se recomand\u0103 actualizarea rapid\u0103.<\/p>\n<p class=\"wp-block-paragraph\">Vulnerabilitatea \u00een cauz\u0103 \u2013 CVE-2026-65400 e reparat\u0103 de Apple \u00een macOS Tahoe, Sequoia \u0219i Sonoma, deci dac\u0103 a\u021bi f\u0103cut update-ul ar trebui s\u0103 fi\u021bi \u00een siguran\u021b\u0103. Cu o not\u0103 de 7.1 din 10, problema de screen sharing a fost raportat\u0103 s\u0103pt\u0103m\u00e2na trecut\u0103 la conferin\u021ba Black Hat \u0219i reparat\u0103 destul de repede \u0219i era activ\u0103 c\u00e2nd portul 5900 era accesibil din Internet \u2013 se \u00eent\u00e2mpl\u0103 automat c\u00e2nd op\u021biunea de de screen sharing e activ\u0103. Ca m\u0103sur\u0103 de protec\u021bie, dac\u0103 \u00eenc\u0103 nu a\u021bi pus actualizarea de s\u0103pt\u0103m\u00e2na trecut\u0103, pute\u021bi dezactiva op\u021biunea de screen sharing \u2013 System Settings &gt; General &gt; Sharing \u0219i apoi dezactivarea Screen Sharing.<\/p>\n<p class=\"wp-block-paragraph\">Un scurt material video \u00een care se poate <a href=\"https:\/\/xcancel.com\/calif_io\/status\/2086022794840793454\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">vedea exploit-ul e accesibil aici<\/a>, asta pentru cine e curios despre ce \u0219i cum.<\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">PoC for a critical vulnerability in Apple macOS Screen Sharing (CVE-2026-65400).<\/p>\n<p>If Screen Sharing is enabled, any network attacker can exploit the bug to log in as any account, without knowing the password.<\/p>\n<p>We reverse engineered Apple\u2019s unusual macOS 26.6.1 patch to understand\u2026 <a href=\"https:\/\/t.co\/WRIIwKx6yI\" rel=\"nofollow\">pic.twitter.com\/WRIIwKx6yI<\/a><\/p>\n<p>\u2014 Calif (@calif_io) <a href=\"https:\/\/x.com\/calif_io\/status\/2086022794840793454?ref_src=twsrc%5Etfw\" rel=\"nofollow\">August 8, 2026<\/a><\/p><\/blockquote>\n<p class=\"wp-block-paragraph\">Dac\u0103 e \u0219i o parte bun\u0103, ar fi c\u0103 \u00een cazurile identificate, atacatorii au pus doar Monero nu \u0219i alte chestii ur\u00e2te pe sistemele atacate. Dar asta nu e o garan\u021bie c\u0103 \u00een toate cazurile s-a \u00eent\u00e2mplat a\u0219a sau c\u0103 se va \u00eent\u00e2mpla a\u0219a.<\/p>\n<p class=\"wp-block-paragraph\">Acum c\u0103 \u0219ti\u021bi, decide\u021bi ce face\u021bi. Sfatul meu este s\u0103 pune\u021bi rapid update-ul \u0219i s\u0103 verifica\u021bi dac\u0103 chiar ave\u021bi nevoie de Screen Sharing.<\/p>\n<p class=\"wp-block-paragraph\">via <a href=\"https:\/\/blog.calif.io\/p\/no-country-for-old-passwords\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">calif<\/a><\/p>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n","protected":false},"excerpt":{"rendered":"Cine folose\u0219te un MacBook \u0219i are activ\u0103 op\u021biunea de screen share activ\u0103 cu diverse aplica\u021bii ar trebui s\u0103&hellip;\n","protected":false},"author":2,"featured_media":266413,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","_share_on_mastodon":"0"},"categories":[16],"tags":[73644,12280,19006,41,40,38,39,73645,80,141,124],"class_list":["post-266412","post","type-post","status-publish","format-standard","has-post-thumbnail","category-tehnologie","tag-cve-2026-65400","tag-exploit","tag-macos","tag-ro","tag-romana","tag-romania","tag-romanian","tag-screen-sharing","tag-securitate","tag-technology","tag-tehnologie"],"share_on_mastodon":{"url":"https:\/\/pubeurope.com\/@ro\/117114192083979482","error":""},"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ro\/wp-json\/wp\/v2\/posts\/266412","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ro\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ro\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ro\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ro\/wp-json\/wp\/v2\/comments?post=266412"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ro\/wp-json\/wp\/v2\/posts\/266412\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ro\/wp-json\/wp\/v2\/media\/266413"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ro\/wp-json\/wp\/v2\/media?parent=266412"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ro\/wp-json\/wp\/v2\/categories?post=266412"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ro\/wp-json\/wp\/v2\/tags?post=266412"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}