A Zoom Screen-Sharing Bug Let Anyone Take Over Other Devices on a Call

https://media.wired.com/photos/6a7a45ba595802741eff3e7c/191:100/w_1280,c_limit/Security_Zoom%20Screensharing%20Bug_v1.jpg

As AI models gain advanced capabilities to find vulnerabilities in software, develop ways to exploit them, and even carry out autonomous hacking sprees, researchers offered a sobering new example on Tuesday, disclosing vulnerabilities in the video conferencing platform Zoom that could have been exploited to take over targets’ devices. Anyone on a call that involved screen sharing, whether participants or the host, would have been vulnerable to a silent attack that could be carried out with no indication and no interaction from the victim.

Researchers from the digital defense firm A Security say the bugwas discovered in early June using publicly available AI models, and that it took fewer than 20 prompts to uncover the vulnerabilities and create a working attack. Zoom issued a security advisory on Tuesday, including details about fixes the company has already begun rolling out to address the flaws, which affected devices running...

Copyright of this story solely belongs to wired.com. To see the full text click HERE

Read more