Comply with ZDNET: Add us as a most well-liked supply on Google.
ZDNET’s key takeaways
- Apple has launched sudden safety patches for the Mac.
- The patches repair a flaw within the Display screen Sharing app.
- The updates have an effect on MacOS Tahoe, Sonoma, and Sequoia.
Apple has pushed out new updates for MacOS Tahoe, Sonoma, and Sequoia in mild of a critical safety vulnerability.
Launched on Thursday, the updates for all three methods patch a flaw that would enable an attacker to use the Display screen Sharing characteristic to entry and management your Mac.
Learn how to get the updates
The updates can be found in three totally different variations, relying on which OS you run — MacOS Tahoe 26.6.1, MacOS Sonoma 14.8.9, and MacOS Sequoia 15.7.9.
To put in the replace, head to System Settings, choose Basic, after which click on Software program Replace. Permit the replace to seem, after which click on the Replace Now button to put in it.
Critical flaw
Since these updates have been sudden, Apple will need to have thought-about the flaw critical sufficient to warrant an instantaneous repair. And that actually appears to be the case. The outline on the help pages says that an attacker might be able to authenticate to Display screen Sharing with out legitimate credentials.
The flexibility to remotely join to a different Mac has lengthy been constructed into MacOS. However the present iteration of the Display screen Sharing app was launched in 2023 with MacOS Sonoma. Utilizing this instrument, you are in a position to entry and management one other Mac in your community. However to do that, you could provide a sound username and password.
Primarily based on the outline of the vulnerability, an attacker might bypass the usually required authentication and achieve management of your Mac with out your permission or authorization. From there, they might simply view your private recordsdata, tamper with Mac options and settings, set up malware, and even enlist your system in a botnet from which to focus on different computer systems.
For such an assault to succeed on a house or protected community, the hacker would first want to realize that preliminary entry. However on a public and unprotected community, that entry can be straightforward sufficient to tug off.
Set up ASAP
Apple did not point out that the flaw had been exploited in any recognized assaults. However the potential is there, which is why you need to set up the replace ASAP.





