Home / Aug 12, 2026 / Story
0
#6 The Hacker News general August 11, 2026 at 19:08 UTC

Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee's Client

By [email protected] (The Hacker News)

AI Summary

Researchers discovered that Zoom's annotation feature — used for drawing and typing on shared screens — contained a zero-click code execution vulnerability allowing any meeting participant to execute code on another attendee's machine, including the presenter, with no user interaction beyond being present in the call. The flaw required no click, download, or visible prompt, making it particularly dangerous in enterprise environments where screen sharing is routine.

Relevance score: 84.0/100

# More from August 12