头版Folia Daily Briefing
← 返回头版
科技互联网

研究人员发现Zoom屏幕共享漏洞可被用于设备劫持

安全研究公司A Security在Zoom视频会议平台中发现了一个漏洞,攻击者可以在屏幕共享过程中利用AI模型劫持用户设备[1]。该漏洞影响Zoom支持的所有主要操作系统,包括Windows、macOS、Linux、iOS和Android[1]。研究人员仅用不到20个AI提示就发现了这些漏洞并创建了可行的攻击方式[1]。

A Security联合创始人Omer Gull表示:"Before it would have taken a team of five people maybe six months with a lot of refining and iteration to find this. Now people can reach the same results with under 20 prompts."[1] 这些攻击可在屏幕共享期间无声执行,不需要受害者进行任何交互[1]。Zoom已于周二发布了安全公告并开始向用户推送修复补丁[1]。


Zoom漏洞屏幕共享AI安全研究设备劫持A Security