Researchers found a way to hijack devices through Zoom screen sharing
A public AI tool found the dangerous Zoom flaw in under 20 prompts.
Researchers have unveiled a concerning method to compromise devices via Zoom's screen sharing feature, disclosed on Tuesday. This vulnerability could allow attackers to silently infiltrate target devices during any screen sharing session, with no discernible evidence or victim interaction required. The discovery was made using publicly available AI models in early June, requiring fewer than 20 prompts to identify and exploit the flaw.
A Security, a digital defense firm, revealed the bug, which impacted devices running Windows, macOS, Linux, iOS, and Android. A Security's cofounder, Omer Gull, emphasized the alarming trend of AI-driven vulnerability exploitation, noting that the barriers to entry have significantly lowered. "Before it would have taken a team of five people maybe six months with a lot of refining and iteration to find this.
Now people can reach the same results with under 20 prompts," Gull stated. Zoom responded by issuing a security advisory detailing the steps being taken to rectify the vulnerabilities. Gull highlighted the trust associated with Zoom usage, suggesting that users often overlook potential threats.
Written by urgent.news from Ars Technica's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.