Key facts
- A critical macOS vulnerability, CVE-2026-65400, is being actively exploited.
- The vulnerability allows remote attackers to gain full control of Macs.
- Attackers can exploit the flaw without needing a password.
- The vulnerability is exploited when port 5900 is accessible.
- Apple has released a patch to address the vulnerability.
- Dutch cybersecurity officials issued the warning.
Dutch cybersecurity officials have issued a warning that a critical vulnerability within macOS is actively being exploited by attackers. The flaw, identified as CVE-2026-65400, permits remote attackers to achieve complete control over affected Mac computers without the need for any password authentication. This exploit is particularly effective when port 5900 is accessible on the target machine. Apple has acknowledged the issue and has since released a patch to rectify the vulnerability. However, the warning highlights that exploitation is ongoing, suggesting that many systems may not yet be updated with the security fix. The accessibility of port 5900 is a key factor in the successful exploitation of this vulnerability, indicating a potential vector for widespread compromise if left unaddressed.
