A Zoom Screen-Sharing Bug Let Anyone Take Over Other Devices on a Call
Image credit: Wired · tap image for original
Researchers used fewer than 20 AI prompts to find a Zoom bug that could hijack other devices on a call.
Summary
- Security researchers disclosed Zoom vulnerabilities that could let someone on a screen-sharing call silently take over other participants' devices.
- They reported finding the flaw with fewer than 20 prompts to a public AI tool.
- Hosts and participants on affected calls were potentially exposed without victim interaction.
- Zoom has fixed the issue according to the reporting; the disclosure is a warning about AI-accelerated vuln discovery.
- Enterprise and government meetings are the obvious high-value targets for this class of bug.
Commentary
AI that finds remote takeovers in a coffee break is the new normal. Patch cadence has to match machine speed.
China's services and criminal markets will industrialize this. Assume meeting software is a battlefield.
Government buyers should demand memory-safe paths and rapid kill-switches, not cute brand campaigns.
Discussion
Is AI-found Zoom RCE the new baseline threat?
redteam
Under 20 prompts to device takeover means every vendor just got drafted.
midwest_vet
Silent hijack on a staff call is espionage candy.
campus_take
Responsible disclosure proves the system works. Calm down.
rule_first
It works only if patches ship before clones do. Time the fix windows.
tokyo_ally
Allied ministries live on these apps. Mandate update SLAs.
aid_fan
Open-source meeting tools funded by grants will save us.
docket_rat
Grants do not stop a zero-click chain. Engineering and liability do.
border_dad
If a stranger can seize your endpoint, you do not control your border.
press_clip
Wired and Verge both rang the bell. Check your Zoom build tonight.
night_shift
Update. Then assume AI will find the next one faster.
Inspired by public posts on X — paraphrased, not attributed.