Skip to content
Safety · Aug 12, 2026

Researchers say AI-assisted exploit allowed takeover of Zoom devices with fewer than 20 prompts

A Security reports an AI-assisted method to hijack Zoom devices via the annotation feature, prompting a patch from Zoom.

Trust72
HypeSome hype

1 source · cross-referenced

ShareXLinkedInEmail
TL;DR
  • Security firm A Security says it discovered a Zoom vulnerability using fewer than 20 prompts on publicly available AI models.
  • The flaw could let an attacker join or host a meeting and run malicious code on victims' devices without their action or visual cues.
  • Zoom issued a fix for the vulnerability on Tuesday across Windows, macOS, Linux, Android, and iOS.

A Security, a security research firm, reported discovering a major Zoom vulnerability that could allow an attacker to hijack participants' devices during a meeting. According to the firm, the flaw was identified using fewer than 20 prompts on publicly available AI models, a process described as involving an AI agent. The exploit targeted Zoom's annotation feature, which enables users to draw on shared screens during a meeting.

The attack allowed an adversary to join or host a meeting and execute malicious code on victims' devices without requiring any action from the victims. A Security noted that the compromise occurred with "no visual cue indicating the compromise," meaning users would not observe signs of the intrusion. The researchers contrasted this with historical expectations that such exploits required "nation-state work: elite teams, months of effort, budgets that governments regulate as weapons."

Zoom issued a patch for the vulnerability on Tuesday, with fixes deployed across Windows, macOS, Linux, Android, and iOS. The company did not immediately respond to requests for additional details about the scope or timeline of the incident.

Sources
  1. 01The Verge — AI‘Zoomsday’ hack uncovered using fewer than 20 AI prompts
Also on Safety

Stories may contain errors. Dispatch is assembled with AI assistance and curated by human editors; despite the trust-score filter, mistakes happen. We correct publicly — every article links to its revision history. Nothing here is financial, legal, or medical advice. Verify before relying on any claim.

© 2026 Dispatch. No ads. No sponsorships. No paid placement. Reader-supported via Ko-fi.

Built by a person who cares about honest AI news.