# screen sharing

Published articles for screen sharing.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Apple patched macOS Screen Sharing vulnerabilities, including a pre-auth flaw

DevFeed: [Apple patched macOS Screen Sharing vulnerabilities, including a pre-auth flaw](<https://devfeed.tech/articles/security-week-2634-macos-screen-sharing-23089.md>)

Original publisher: [Read original article](<https://habr.com/ru/companies/kaspersky/articles/1071144/>)

Author: Kaspersky\_Lab ("Лаборатория Касперского")

Published: 2026-08-17T14:31:10Z

Content type: news

Language: ru

Sources: ["Лаборатория Касперского" RU](<https://devfeed.tech/sources/ru-2.md>)

Topics: [macOS](<https://devfeed.tech/topics/macos.md>), [Security](<https://devfeed.tech/topics/security.md>), [ChatGPT](<https://devfeed.tech/topics/chatgpt.md>)

Tags: [chatgpt](<https://devfeed.tech/tags/chatgpt.md>), [cve](<https://devfeed.tech/tags/cve.md>), [mac-os](<https://devfeed.tech/tags/mac-os.md>), [macos](<https://devfeed.tech/tags/macos.md>), [screen](<https://devfeed.tech/tags/screen.md>), [screen-sharing](<https://devfeed.tech/tags/screen-sharing.md>), [security](<https://devfeed.tech/tags/security.md>), [tag-9fe8963de219](<https://devfeed.tech/tags/tag-9fe8963de219.md>)

### AI overview

Apple released macOS updates to address Screen Sharing vulnerabilities. The report distinguishes a post-auth flaw found by Bynario with ChatGPT assistance from a separate pre-auth flaw, and says vulnerable internet-exposed systems were reportedly attacked to install a Monero miner.

### Source excerpt

6 августа компания Apple выпустила срочный патч, закрывающий уязвимость CVE-2026-65400 в операционной системе macOS. Обновления стали доступны для версий macOS Tahoe (26.6.1), а также более старых Sequoia (15.7.9) и Sonoma (14.8.9). Уязвимость обнаружена в службе, отвечающей за возможность поделиться содержимым экрана рабочего стола. В описании патча, как всегда максимально лаконичном, компания Apple благодарит исследователя Альфредо Песоли из компании Bynario. Его публикацию по данной теме можно прочитать здесь. В ней описана возможность неправомерного доступа к компьютеру Apple с максимальными привилегиями, но только если атакующему известен пароль. На самом деле, как позднее указали представители компании Calif, речь идет о двух разных уязвимостях в одном и том же модуле. Идентификатор проблемы, которую выявили в Bynario, -- CVE-2026-43760. Она была обнаружена при помощи ИИ-ассистента ChatGPT и относится к классу post-auth -- то есть атакующий должен знать пароль. Эта проблема, вместе с парой других, также в Screen Sharing, была закрыта апдейтом macOS 26.6. Еще раньше исследователь, известный под ником Osxreverser, обнаружил уязвимость класса pre-auth -- эксплуатация без аутентификации, пароль знать не требуется. Но не стал сообщать о ней компании Apple, а только среагировал на публикацию компании Bynario. Читать далее

## Android expands pilot for in-call scam protection for financial apps

DevFeed: [Android expands pilot for in-call scam protection for financial apps](<https://devfeed.tech/articles/android-expands-pilot-for-in-call-scam-protection-for-financial-apps-19807.md>)

Original publisher: [Read original article](<http://security.googleblog.com/2025/12/android-expands-pilot-in-call-scam-protection-financial-apps.html>)

Author: Edward Fernandez (noreply@blogger.com)

Published: 2025-12-03T16:59:00Z

Content type: release

Language: en

Sources: [Google Online Security](<https://devfeed.tech/sources/google-online-security.md>)

Topics: [Android](<https://devfeed.tech/topics/android.md>), [Security](<https://devfeed.tech/topics/security.md>), [Social engineering](<https://devfeed.tech/topics/social-engineering.md>), [Mobile](<https://devfeed.tech/topics/mobile.md>), [Google](<https://devfeed.tech/topics/google.md>)

Tags: [android](<https://devfeed.tech/tags/android.md>), [android-security](<https://devfeed.tech/tags/android-security.md>), [google](<https://devfeed.tech/tags/google.md>), [mobile](<https://devfeed.tech/tags/mobile.md>), [none](<https://devfeed.tech/tags/none.md>), [safety](<https://devfeed.tech/tags/safety.md>), [scams](<https://devfeed.tech/tags/scams.md>), [screen-sharing](<https://devfeed.tech/tags/screen-sharing.md>), [security](<https://devfeed.tech/tags/security.md>), [social-engineering](<https://devfeed.tech/tags/social-engineering.md>)

### AI overview

Google is expanding Android's pilot for in-call scam protection to the United States with selected fintechs and banks, following pilots in the UK, Brazil, and India. The feature warns users when they open participating financial apps while screen sharing during a call from an unknown number, and provides a one-tap option to end the call and stop screen sharing.

### Source excerpt

Posted by Aden Haussmann, Associate Product Manager and Sumeet Sharma, Play Partnerships Trust & Safety Lead Android uses the best of Google AI and our advanced security expertise to tackle mobile scams from every angle. Over the last few years, we've launched industry-leading features to detect scams and protect users across phone calls, text messages and messaging app chat notifications. These efforts are making a real difference in the lives of Android users. According to a recent YouGov survey1 commissioned by Google, Android users were 58% more likely than iOS users to report they had not received any scam texts in the prior week2. But our work doesn't stop there. Scammers are continuously evolving, using more sophisticated social engineering tactics to trick users into sharing their phone screen while on the phone to visit malicious websites, reveal sensitive information, send funds or download harmful apps. One popular scam involves criminals impersonating banks or other trusted institutions on the phone to try to manipulate victims into sharing their screen in order to reveal banking information or make a financial transfer. To help combat these types of financial scams, we launched a pilot earlier this year in the UK focused on in-call protections for financial apps. How the in-call scam protection works on Android When you launch a participating financial app while screen sharing and on a phone call with a number that is not saved in your contacts, your Android device3 will automatically warn you about the potential dangers and give you the option to end the call and to stop screen sharing with just one tap. The warning includes a 30-second pause period before you're able to continue, which helps break the 'spell' of the scammer's social engineering, disrupting the false sense of urgency and panic commonly used to manipulate you into a scam. Bringing in-call scam protections to more users on Android The UK pilot of Android's in-call scam protections has al