A security researcher used fewer than 20 AI prompts to uncover flaws in Zoom’s annotation tool. The vulnerabilities, identified by Israeli firm A Security under the name ‘Zoomsday,’ allowed an attacker to execute code on another participant’s device without any action from the victim. The attack was tested on Zoom apps for Windows, macOS, Linux, Android, and iOS. Zoom released fixes between June 22 and July 20. The three flaws are tracked as CVE-2026-53413, CVE-2026-53414, and CVE-2026-53415.
Source: Read the original article

