Zoom vulnerability discovered using AI prompts
Zoom has patched a significant security flaw that could have allowed an attacker to hijack a user's device during a meeting. The vulnerability was uncovered using fewer than 20 prompts on publicly available AI models.

Zoom has addressed a critical security vulnerability that could have enabled an attacker to gain control of a user's device during a meeting. Researchers at security firm A Security announced on Tuesday that they discovered the flaw by utilizing fewer than 20 prompts on publicly accessible AI models, as previously reported by Wired.
The exploit targeted Zoom's annotation feature, which is used during screen sharing to allow participants to draw on the shared screen. An attacker could have potentially joined or hosted a meeting and executed malicious code on victims' devices. This could have led to data theft, unauthorized activation of the camera or microphone, or the installation of malware.
According to Zoom, the vulnerability did not require any specific action from the victims, such as clicking a malicious link or downloading a file. The company has since released a security update and urges all users to update their software to the latest version to ensure protection against potential exploitation.