A Zoom Screen-Sharing Bug Let Anyone Take Over Other Devices on a Call

Security researchers used AI to discover a critical vulnerability in Zoom's screen-sharing annotation feature that could allow unauthorized device control. Zoom has since released patches to address the flaw across all supported operating systems.
Why it matters
The use of AI to accelerate vulnerability discovery highlights a new frontier in cybersecurity, where the barrier to entry for malicious actors is rapidly lowering.
Researchers from the digital defense firm A Security say the bug was discovered in early June using publicly available AI models, and that it took fewer than 20 prompts to uncover the vulnerabilities and create a working attack. Zoom issued a security advisory on Tuesday, including details about fixes the company has already begun rolling out to address the flaws, which affected devices running all operating systems that Zoom supports—Windows, macOS, Linux, iOS, and Android.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in