Advertisement
Sections
Zoom apologises for flaw that could allow attackers to acquire Windows password, promises to fix issues
Zoom chief said that usage of Zoom had far surpassed what they expected when they launched it in late February.

Video conferencing app Zoom has surged in popularity amid the ongoing coronavirus lockdown. However, recently the app faced a lot of flak when two researchers claimed to have found a loophole that can allow attackers acquire Windows passwords.The researchers said hackers can also silently access a user's Macbook and tap into its webcam and microphone.Zoom chief executive Eric S Yuan has apologised for the security issues and promised to look into the concerns.Yuan said that usage of Zoom had far surpassed what they expected when they launched it in late February.[caption id="attachment_8197001" align="alignnone" width="1024"]
Zoom video conferencing app[/caption]“As of the end of December last year, the maximum number of daily meeting participants, both free and paid, was approximately 10 million. In March this year, we reached more than 200 million,” he added.The Zoom CEO admitted that despite working around the clock, the service had fallen short of security expectations, adding, “for that, I am deeply sorry.”According to Yuan, Zoom now has a much broader set of users who are utilising the product in a number of ways, presenting them with challenges they did not anticipate.As per a report by the BBC, Ex-NSA (National Security Agency) hacker Patrick Wardle first identified a series of issues in the video conferencing app.Yuan described a series of steps they would be taking to tackle the problem over the next 90 days, including:
Zoom video conferencing app[/caption]“As of the end of December last year, the maximum number of daily meeting participants, both free and paid, was approximately 10 million. In March this year, we reached more than 200 million,” he added.The Zoom CEO admitted that despite working around the clock, the service had fallen short of security expectations, adding, “for that, I am deeply sorry.”According to Yuan, Zoom now has a much broader set of users who are utilising the product in a number of ways, presenting them with challenges they did not anticipate.As per a report by the BBC, Ex-NSA (National Security Agency) hacker Patrick Wardle first identified a series of issues in the video conferencing app.Yuan described a series of steps they would be taking to tackle the problem over the next 90 days, including:- Sanctioning a feature freeze with immediate effect and shifting engineering resources to focus on safety, and privacy issues
- Conducting a comprehensive review with third-party experts and representative users to ensure security of all new cases
- Creating transparency report that details information related to requests for data, records, or content
- Enhancing current bug bounty programme
- Launching CISO council in partnership with leading CISOs from across the industry to facilitate an ongoing dialogue regarding security and privacy best practices
- Engaging a series of white-box penetration tests to further identify and address issues
First Published:Apr 03, 2020, 14:59:48 IST
Advertisement
Advertisement

Why AI notetakers are raising serious privacy and security concerns
AI notetakers promise effortless meeting summaries, but experts warn they could expose confidential conversations, corporate secrets and personal voiceprints. As businesses increasingly adopt AI-powered meeting assistants, questions over data storage, privacy, consent and legal risks are becoming impossible to ignore
5 min read
China's low-cost AI models are changing the global AI race. Here's why Silicon Valley is worried
As Chinese firms continue to improve performance while keeping prices low, the AI race is no longer just about building the smartest model—it is increasingly becoming a battle over who can deliver the best value
2 min read
China's Kimi K3 challenges US AI leaders with frontier-level performance at lower cost
Chinese artificial intelligence startup Moonshot AI has unveiled its latest open-weight AI model, Kimi K3, with early results suggesting it could compete with some of the world's most advanced AI systems developed by leading US companies
2 min read
How did Instagram run ads promoting child abuse in India?
India has issued a notice to Meta after an investigation alleged that Instagram displayed paid advertisements promoting child sexual abuse material. MeitY ordered Meta to remove such Instagram ads and explain within seven days how they were approved
8 min read
Why has India halted WhatsApp’s username feature before launch?
India has halted WhatsApp’s planned username feature, citing concerns about cybercrime, impersonation, and law enforcement challenges. As Meta races to address security concerns, here’s why MeitY has paused the rollout, what the feature does, and how it could influence privacy and online safety in India
3 min read
Advertisement
Advertisement
