Public AI Tool Exposes Critical Zoom Screen-Sharing Vulnerability
TL;DR. Researchers used a public AI model to uncover a critical vulnerability in Zoom's screen-sharing protocol, allowing device takeover. - The AI tool found the flaw in under 20 prompts, demonstrating the democratization of vulnerability discovery. - Zoom issued server and client-side patches across all operating systems to address the identified security issues. - The incident highlights AI's capability for autonomous hacking and potential risks for software security.
- A Security researchers discovered a critical Zoom vulnerability using a publicly available AI tool.
- The flaw in Zoom's screen-sharing allowed silent device takeover on all supported operating systems.
- It took the AI tool fewer than 20 prompts to find and demonstrate the exploit.
- Zoom has since patched the vulnerabilities with both server and client-side fixes.
Sources
- A Zoom Screen-Sharing Bug Let Anyone Take Over Other Devices on a Call — wired.com
- 9to5mac.com — 9to5mac.com
- thehackernews.com — thehackernews.com