AI Safety 🇺🇸 11.08.2026 18:01

'Zoomsday' hack discovered with fewer than 20 AI prompts

Zoom has fixed a critical vulnerability that could let attackers take over devices during meetings. Security firm A Security found the flaw using fewer than 20 prompts on public AI models, according to a blog post and Wired report.
Zoom has patched a major security vulnerability that could allow an attacker to hijack anyone's device during a meeting. Researchers at A Security say they uncovered the flaw using fewer than 20 prompts on publicly available AI models, as reported by Wired. The exploit involved Zoom's annotation feature, which lets users draw on their screens while sharing with participants. An attacker could join or host a meeting and run malicious code on victims' devices, stealing data, turning on cameras or microphones, or installing malware. The attack required no action from victims and showed no visual cue of compromise. According to A Security, such an exploit typically requires nation-state resources, but they achieved it in a single day with an AI agent and accessible models. Zoom issued a fix for the vulnerability on Tuesday, impacting the app across Windows, macOS, Linux, Android, and iOS.
Source: The Verge — original
Our earlier posts on this topic ↓
Fresh news