These Zoom security flaws could allow hackers to hijack your device
Credit:
Wired
L33tdawg: They're also presenting a paper at #HITB2021AMS in May - MacOS Local Security: Escaping the Sandbox and Bypassing TCC
Zero-day vulnerabilities within the Zoom Messenger desktop client could allow hackers to execute random code on a victim’s machine, security experts have claimed.
Ethical hackers Daan Keuper and Thijs Alkemade from CompuTest Security demonstrated their exploit at hacking contest Pwn2Own, and were awarded a bug bounty of $200,000 by the video conferencing service.
Commenting on the exploit, Keuper said that while earlier Zoom vulnerabilities allowed attackers to infiltrate the calls, their exploit was a lot more serious as it allows attackers to take over the entire system.