Zoom new 0day vulnerabilities (Pwn2Own 2021)

A pair of security researchers have uncovered many 0day vulnerabilities in Zoom in recent days that would allow hackers to take over someone's computer, even if the victim does not click.

Zoom told Gizmodo that a server side update was released on Friday to address vulnerabilities. they do not need to do anything.

The vulnerabilities were identified by Dutch researchers Daan Keuper and Thijs Alkemade from Computest Security, a security company, as part of the competition Pwn2Own 2021 organized by the Zero Day Initiative. Although not many details are known about these vulnerabilities due to the politics of the contest, in essence, the researchers used a chain of three bugs in Zoom for desktop computers to conduct a remote code on the target system.

The user does not have to click to succeed in the attack. You can see the error below.

In one statement σχετικά με τη νίκη του Keuper και του Alkemade, η Computest Security ανέφερε ότι οι ερευνητές ήταν σε θέση να αναλάβουν σχεδόν πλήρως τα στοχευμένα συστήματα, εκτελώντας ενέργειες όπως ενεργοποίηση της κάμερας, ενεργοποίηση του μικροφώνου, ανάγνωση email, έλεγχος της οθόνης και browser history.

In case you forgot, the Zoom was not synonymous with security last year. There were Zoom Bombings that took advantage of Zoom's then loose control measures to drop porn clips and Nazi slogans in online sessions.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).