Particle.news
Download on the App Store

Apple Issues Out‑of‑Cycle macOS Fix for Screen Sharing Authentication Bypass

Apple says the updates are available in System Settings with no indication the flaw has been exploited.

Overview

  • Apple released point updates for macOS Tahoe, Sequoia and Sonoma that install the same single security fix in macOS Tahoe 26.6.1 (25G76), Sequoia 15.7.9 (24G830) and Sonoma 14.8.9 (23J631).
  • The patches close CVE-2026-65400, an authentication bug in Screen Sharing that could allow an attacker on the same network to authenticate without valid credentials and gain remote view or control depending on system settings.
  • Apple published the security note and credited researcher Alfredo Pesoli via Bynario Atlas for reporting the issue, and multiple outlets recommend users install the updates promptly.
  • The updates were issued without developer or public betas, reflecting Apple’s move to push urgent fixes outside the normal release cadence, and users can install them via System Settings > General > Software Update.
  • While Apple and reporters say there is no public evidence the flaw was exploited, the potential to view screens, open apps or access files makes this a high‑priority security patch for Mac users and administrators.