Apple Screen Sharing Pre-Auth RCE

13 points by fro


winter

Also see: https://reverse.put.as/2026/07/29/its-a-pre-auth-stupid/

regalialong

I know a meta comment like this is annoying, but putting your security advisories on a "warez" subdomain gives me a range of emotions from "I wouldn't do that if I were you" to "What a gross misappropriation of the term"

tomsmeding

The report seems to be LLM-generated. Fine, a bug is a bug, and the text is clear enough. But from the disclaimer at the bottom:

No human reviewed the output for correctness prior to publication.

Can not even a look at published material be spared any more these days?