Zoom Annotation Flaws Enabled Hijacking, Exploited via AI in Under a Day

Thionne_WTZ · x · 2026-08-12

Security researchers discovered three flaws in Zoom's screen annotation feature that allowed an attacker to hijack other attendees' computer clients during a meeting without requiring any clicks or downloads from the victim.

The uncovering firm, "A Security," revealed they developed a working exploit in under a day using fewer than 20 prompts directed at publicly available AI models, though the specific model was not named. Zoom shipped patches in June and July, and no active exploitation has been reported thus far.

Related event: AI Cracks Zoom Zero-Click Vulnerability in Under 20 Prompts(2 posts)→

Original post →

More from Safety

Safety channel →