Spyke

Syndicated from the fediverse. Read and engage on the original instance.

View original on lemmus.org

14 replies

lemmy.ca

MacOs' greatest strength against malware was a small install base.

16

Same with Linux

I'm really worried for the future if we don't get our shit together (AUR malware already proves what kind of damage these people can do)

19
eurodynereply
piefed.world

As more and more people flee windows and seek alternatives, expect to see this sort of thing to increase.

11
Haleyreply
lemmus.org

Especially now with AI agents discovering vulnerabilities at a pretty insane pace

10
Haleyreply
lemmus.org

It is really scary navigating, but I'm hoping being careful is still enough for most of what I do.

1
eurodynereply
piefed.world

These sorts of attacks rely on a person finding themselves in a pretty shady situation already. You would have had to responded to some shady Web link or some shady email, and already clicked on a few shady links to get to the point where you were screen sharing with some bad actor somewhere. This exploit would have to be run on someone who was already pretty far down the rabbit hole.

If you’re pretty careful, you would never get started in the first place.

In fact, sometimes you will see these reports, and it turns out that these exploits exist only in a lab where they tested it, and haven’t been discovered in the real world

2

Yeah hopefully you're right. Just a lot of scary reports all around compounded with threats I have already received personally.

1
lemdro.id

Who in their right mind is exposing them directly to the internet? Poorly configured routers to blame here I assume?

7

I haven’t seen full details on this yet but I’m curious how much of this is UPnP type situations. Routers have been doing much better with it being disabled by default compared to past however.

1
neon_novareply
lemmy.dbzer0.com

How are people idiots for screen sharing with zoom and getting hacked by something even Apple did not know about?

4

[…] screen sharing with zoom

It’s a bit more nuanced than that and most casual users likely are not vulnerable to this exploit:

[…] requires the target Mac to have Screen Sharing or Remote Management enabled with "VNC viewers may control screen with password" configured and the attacker is already in possession of that VNC password

Regardless, victim blaming is still lame

3

You reached the end

Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner | Spyke