Serious Security Flaw Found in Apple Mac Computers
Experts warn that hackers are already using a new vulnerability to take control of systems worldwide.
🕒 生成時間: (台北時間)
Summary · 摘要
A dangerous security flaw in macOS is currently being used by attackers to gain full control of computers. The problem exists within the screen sharing feature of Apple devices. Security officials in the Netherlands have reported that hackers are using this to install software that mines cryptocurrency. Apple has already released a software update to fix this issue for users. Everyone with a Mac is encouraged to update their systems immediately to stay safe.
macOS 中一個危險的安全漏洞目前正被攻擊者利用,以取得電腦的完全控制權。該問題存在於蘋果裝置的螢幕共享功能中。荷蘭的安全官員指出,駭客正利用此漏洞安裝加密貨幣挖礦軟體。蘋果已發布軟體更新以修復此問題。建議所有麥金塔電腦使用者立即更新系統,以確保安全。
Ongoing story · 追蹤中的新聞
This article follows earlier coverage on the same developing story.
- Twitch Users Gain New Control Over AI Data Training
· 2026年8月13日
Twitch has introduced a new setting that allows users to opt out of having their content used for AI training. For years, Amazon has automatically used streams and chats to improve its artificial intelligence systems. Users can now find a simple toggle in their security settings to protect their data. This change follows a long period of automatic data collection that was confirmed by company officials in 2024. While some AI tools for safety and captions will remain active, this move gives creators more power over their digital work.
A serious security problem affecting Apple Mac computers is currently being used by hackers to take complete control of devices. According to Ars Technica, experts have discovered that this vulnerability is already being actively used in real-world attacks. The issue, which is officially tracked as CVE-2026-65400, allows unauthorized people to gain full access to a computer without needing a password.
This security flaw is located within the screen sharing feature of macOS. Screen sharing is a tool that allows a person to see another computer’s screen and control its keyboard and mouse from a distance. The problem happens because of a bug in how the system manages its current state, such as tracking user actions and other system activities. Because of this, an attacker can bypass security protections and take over the machine while it is turned on.
Officials from the Netherlands National Cyber Security Centrum (NCSC) issued a warning earlier this week regarding the situation. They reported that they have seen active abuse of this flaw on several systems that had port 5900 open to the internet. A port is a digital connection point that allows data to travel between computers. When these ports are left open, it makes it easier for attackers to reach the system. In every case the NCSC investigated, the attackers were able to gain 'root' access. Root access means having the highest level of control over a computer, allowing a user to change or delete anything on the system.
Once the attackers gained this high level of control, they installed a Monero crypto miner. A crypto miner is a type of software that uses the computer's power to create digital currency for the attacker. This process can make a computer run very slowly and use a large amount of electricity, often without the owner knowing that anything is wrong. The NCSC noted that these attacks were specifically targeting systems where the screen sharing feature was accessible from the public internet.
Details about this vulnerability were first shared publicly at the Black Hat security conference last week. This event brings together security experts from all over the world to discuss new threats and ways to protect technology. Following the disclosure, Apple released a patch—a small piece of software designed to fix a bug or security hole—for macOS Tahoe, Sequoia, and Sonoma. The company gave the vulnerability a severity rating of 7.1 out of 10, which indicates that it is a high-risk issue that users should take seriously.
In its official statement, Apple mentioned that the flaw 'may' allow an attacker without credentials to gain access to a Mac. While some experts noted that this language felt a bit soft, it is common for technology companies to use careful wording when they first talk about security problems. By using this language, companies often try to avoid causing unnecessary panic while they work to provide a solution for their customers.
This discovery follows a busy month for digital security news. Recently, other platforms have also been making changes to how they handle user data. For example, as reported in previous updates, Twitch users have gained new control over how their content is used for artificial intelligence training. While that issue focused on privacy, the current Mac vulnerability is a much more direct threat to the safety and operation of personal hardware.
To protect themselves, Mac users should ensure that their operating system is updated to the latest version provided by Apple. The patch released last week effectively closes the door on this specific attack method. Additionally, security experts suggest that users check their settings to ensure that screen sharing is turned off if they do not need to use it. Keeping ports closed and software updated are two of the most important steps that any computer user can take to prevent hackers from gaining control of their devices. As the digital world continues to change, staying informed about these updates remains the best way to keep personal information and hardware safe from harm.
選擇題練習 · Quiz
共 4 題
- 細節 Detail
1.According to the article, what specific condition must be met for the NCSC to have observed active abuse of the vulnerability?
- 推論 Inference
2.What can be inferred about the 'soft' language Apple used in its official statement regarding the security flaw?
- 單字情境 Vocabulary
3.In the final paragraph, what does the phrase 'closes the door' mean in the context of the software patch?
- 主旨 Main Idea
4.What is the primary message of this article?
易誤解詞彙 · Words to watch
這些字字面意思和文中用法不同,或是不常見的詞性/片語。
- take over phrasal verb
- To gain control of something.
- 接管、控制。
- 💡 常見於商業併購,這裡指駭客取得電腦控制權。文中:Because of this, an attacker can bypass security protections and take over the machine while it is turned on.
- closes the door on idiom
- To prevent something from happening or continuing.
- 杜絕、終結(某事發生的可能性)。
- 💡 字面意思是關門,這裡比喻修補漏洞以防止攻擊。文中:The patch released last week effectively closes the door on this specific attack method.
- soft adjective
- Not firm or forceful; cautious or indirect.
- (語氣)委婉的、不夠強硬的。
- 💡 常見作形容詞(柔軟),這裡形容公司聲明語氣不夠強硬。文中:While some experts noted that this language felt a bit soft, it is common for technology companies to use careful wording when they first talk about security problems.
原始來源 · Sources
本文內容由 AI 從以下來源綜合改寫。事實請以原始來源為準。
gemini/gemini-3.1-flash-lite