Home Tech Zoom fixes safety flaw that permit attackers hijack your Mac | Engadget

Zoom fixes safety flaw that permit attackers hijack your Mac | Engadget

0
Zoom fixes safety flaw that permit attackers hijack your Mac | Engadget

Zoom customers with Macs can relaxation a bit simpler. Ars Technica reports Zoom has updated its Mac software program to patch a vulnerability that permit would-be intruders take management of techniques. The video calling software program’s auto-updater software program not solely had root-level entry, however had a signature verification system that you might idiot just by giving your bundle a well-known file title. A hacker may drive your app to downgrade or in any other case allow exploits.

Objective-See Foundation (OSF) creator and researcher Patrick Wardle first found the safety gap, and disclosed it to Zoom in December final yr. Zoom fastened that downside, however launched one other bug within the course of. Zoom addressed that, too, however Wardle discovered nonetheless one other flaw. The OSF founder mentioned his findings at Def-Con final week. Zoom acknowledged the problem that day, and patched it afterward.

This is not the primary time Zoom has grappled with safety complications, together with for the Mac. In 2019, the corporate raced to repair a webcam hijack exploit that relied on a locally-created internet server. Increased scrutiny of Zoom at the beginning of the COVID-19 pandemic in spring 2020 additionally prompted a full-scale overview of the corporate’s practices. While that did result in modifications, it is clear Zoom is not proof against missteps.

All merchandise beneficial by Engadget are chosen by our editorial workforce, impartial of our guardian firm. Some of our tales embody affiliate hyperlinks. If you purchase one thing via one among these hyperlinks, we could earn an affiliate fee.

#Zoom #fixes #safety #flaw #attackers #hijack #Mac #Engadget