Urgent.News

What's breaking now, across thousands of outlets.

Tech

A Zoom Screen-Sharing Bug Let Anyone Take Over Other Devices On a Call

An anonymous reader quotes a report from Wired: As AI models gain advanced capabilities to find vulnerabilities in software, develop ways to exploit them, and even carry out autonomous hacking sprees, researchers offered a sobering new example on Tuesday, disclosing vulnerabilities in the video conferencing platform Zoom that could have been exploited to take over targets' devices. Anyone on a…

An anonymous report from Wired details a severe security flaw in the Zoom video conferencing platform that could allow attackers to seize control of devices during screen sharing sessions. Anyone joining a call utilizing screen sharing, whether as a participant or host, remains at risk to a silent, undetectable attack requiring minimal interaction.

The vulnerability, discovered by researchers at digital defense firm A Security in early June using publicly available AI models, could be exploited with fewer than 20 prompts. Zoom has since issued a security advisory and begun rolling out fixes for operating systems including Windows, macOS, Linux, iOS, and Android. The bugs specifically stemmed from the protocol facilitating real-time annotation during screen sharing.

While major companies like Zoom typically undergo thorough code reviews, the researchers note that obscure, complex features such as annotation are often overlooked in closed-source software. The researchers emphasize the troubling trend of AI-driven vulnerability exploitation becoming more accessible, questioning the trust users place in platforms like Zoom.

Written by urgent.news from Slashdot's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Also reported by 1 other outlet

Read the original at it.slashdot.org →

More in Tech

More from Tuesday 11 August →