Microsoft Threat Intelligence

@msftsecintel · Twitter ·

Microsoft Defender is monitoring the active exploitation of the CVE-2026-65400 improper authentication vulnerability on a limited number of macOS devices, with telemetry showing successful root account network sign-ins through Screen Sharing. Microsoft urges customers to

Image of a stylized, black shield with a white silhouette and a diagonal line, set against a gradient background of purple and orange.