Critical Vulnerability in macOS Screen Sharing Allows Unauthorized Root Access
CVE-2026-43760 logic flaw in macOS Screen Sharing can be exploited to execute commands as root via file-copy helpers.

Loading
§The archiveMon · Wed · FriM · W · F
Every dispatch we've sent. AI-curated, human-reviewed, from 50+ cybersecurity sources.
Follow on LinkedInCVE-2026-43760 logic flaw in macOS Screen Sharing can be exploited to execute commands as root via file-copy helpers.
CVE-2026-19478 zero-click GitLab vulnerability lacks technical details, complicating detection for self-managed deployments.
CoSnitch vulnerabilities in Microsoft Copilot Personal let a crafted link exfiltrate connected-app data with a single click.
GitLab fixed a critical code injection flaw allowing unauthenticated actors to modify or delete user data and public projects.
Two-stage Unisoc VoLTE exploit chain achieves full Android kernel access via a specially crafted video call payload.
Critical AIT-GUI vulnerabilities allow unauthenticated attackers to issue spacecraft commands and manipulate ground-control scripts.
TWINLOOT Python implant uses SharePoint and Teams to host C2, steal credentials, and pivot inside Microsoft tenant environments.
CVE-2026-15748 arbitrary file upload bug in a WordPress form plugin lets unauthenticated attackers upload executable files on ~300,000 sites.
Clop gang developed a Java web shell tailored for PTC Windchill and FlexPLM to decrypt credentials and exfiltrate files.
CISA confirms ransomware groups are exploiting a high-severity Windows Task Host vulnerability previously flagged as actively exploited.
Hackers stole names, addresses, phone numbers, Social Security numbers, and financial details from a third-party platform affecting 1.2 million.
Updated FBI/CISA/HHS advisory details Medusa techniques: disabling security, exfiltrating data, and encrypting whole networks.
CISA added a critical Ray vulnerability to its Known Exploited Vulnerabilities catalog due to observed active exploitation.
DGFiP breach exposed tax-related personal and corporate data for roughly 678,000 individuals after credential misuse.
Active exploitation of MLflow SSRF (CVE-2026-64849) leads to cloud credential and secret theft from ML deployments.
Get these articles delivered to your inbox.
Subscribe freeSANS warns of exploited flaws in SharePoint, Winsock, VMware vCenter, and other vendor vulnerabilities requiring urgent patching.