Η Zoom διορθώνει κενό ασφαλείας μηδενικού κλικ που εντόπισε η AI σε λιγότερο από μία ημέρα

32 πηγές
  • Η Zoom διόρθωσε ένα κρίσιμο κενό ασφαλείας μηδενικού κλικ στη λειτουργία σχολιασμού, το οποίο θα μπορούσε να επιτρέψει σε εισβολέα να εκτελέσει κώδικα στη συσκευή οποιουδήποτε συμμετέχοντος χωρίς προειδοποίηση.
  • Η εταιρεία ασφαλείας A Security αναφέρει ότι ανακάλυψε και εκμεταλλεύτηκε την ευπάθεια, με την ονομασία "Zoomsday", σε λιγότερο από 24 ώρες χρησιμοποιώντας δημόσια διαθέσιμα μοντέλα AI.
  • Η αποκάλυψη ακολουθεί τις προειδοποιήσεις στο Black Hat USA 2026 ότι ο εντοπισμός ευπαθειών μέσω AI ξεπερνά την ικανότητα των επιχειρήσεων να εφαρμόζουν διορθώσεις.
Πηγές (32)
  1. 1 'Zoomsday' hack uncovered using fewer than 20 AI prompts www.theverge.com
  2. 2 Zoom Patches “Zoomsday” Zero-Click Flaw Enabling ... securityaffairs.com
  3. 3 Ⓐ Cyber Security | Blog | ZOOMSDAY a.security
  4. 4 Black Hat USA 2026: The Day the Machines Stopped ... www.linkedin.com
  5. 5 Black Hat USA 2026 – Summary of Vendor ... www.securityweek.com
  6. 6 Zoom Zero-Click 'Zoomsday' Flaw Lets Meeting Participants Execute ... gbhackers.com
  7. 7 Turns Out You Don't Need The Most Powerful AI Models to Cause a Major Cybersecurity Incident gizmodo.com
  8. 8 AI Helps Researchers Uncover Zoom Zero-Click RCE in ... www.esecurityplanet.com
  9. 9 Zoom Annotation Flaws Could Let a Meeting Participant Hijack ... thehackernews.com
  10. 10 Zoom Patches Zero-Click Code Execution Vulnerability www.securityweek.com
  11. 11 Critical Zoom vulnerability triggers remote code execution without ... www.reddit.com
  12. 12 BREAKING: On August 11, 2026, Zoom disclosed and ... www.instagram.com
  13. 13 Security Bulletins www.zoom.com
  14. 14 Remote Code Execution Vulnerability in Zoom Client for Windows ... blog.0patch.com
  15. 15 Zoom zero-click remote code execution through the client annotation ... www.secureblink.com
  16. 16 AI Browsers Vulnerable to 'PleaseFix' Zero-Click Agent ... www.darkreading.com
  17. 17 Zoom Products Remote Code Execution Vulnerability www.hkcert.org
  18. 18 EchoLeak: The First Real-World Zero-Click Prompt ... arxiv.org
  19. 19 CVE-2025-32711: Zero-Click 'EchoLeak' Vulnerability in ... www.rescana.com
  20. 20 Vulnerability Research – Cyber westoahu.hawaii.edu
  21. 21 AI Prompt Security: Protecting Against Model Misuse & Risks www.ox.security
  22. 22 Harness Up For Our Black Hat 2026 Recap www.forrester.com
  23. 23 Top AI Security Vulnerabilities to Watch out for in 2026 cycode.com
  24. 24 Black Hat USA 2026: Field Report and Cybersecurity ... www.cyberdefensemagazine.com
  25. 25 Prompt Injection Attacks: Types, Examples & Mitigations www.cycognito.com
  26. 26 Black Hat USA 2026: Security Vendors Go Agentic virtualizationreview.com
  27. 27 Prompt Injection Threats in AI Systems Explained www.ampcuscyber.com
  28. 28 Black Hat 2026 AI Security: Agents, Escapes, and Machine ... www.toxsec.com
  29. 29 Invisible AI Data Theft EXPOSED Big thanks to ​⁠ for ... www.instagram.com
  30. 30 Black Hat USA 2026: The Data Security Roundup dlptest.com
  31. 31 Indirect Prompt Injection Attacks: Hidden AI Risks www.crowdstrike.com
  32. 32 Artificial intelligence models and applications a growing target for attackers insurance-portal.ca