Tenable was behind one software update to fix security flaws that’s circulating this week.
The research arm of the Columbia-based cybersecurity company discovered a vulnerability in Zoom’s conferencing platform that would allow attackers to take control of a user’s desktop remotely during a meeting.
After being alerted, Tenable said that Zoom quickly updated the software.
According to Tenable, the security flaw, if exploited, would allow attackers to do the following:
- Hijack control of a screen, allowing them to download and execute malware.
- Impersonate others in the meeting through chat messages.
- Kick out other attendees of the meeting.
A blog post from the company states the vulnerability was discovered by Tenable’s David Wells.
“This impacts both one-on-one (P2P) meetings as well as group meetings streamed through Zoom servers,” the blog post states, adding that the vulnerability could also be exploited over Wide Area Network (WAN).
The vulnerability could’ve put 750,000 companies that use Zoom at risk.
To fix the vulnerability, Zoom patched servers and released new versions of the software. The company is urging users to ensure their software is up-to-date.
This vulnerability is the perfect example of the cyber attack surface that is expanded by seemingly innocuous services, like Zoom,” Tenable CTO Renaud Deraison said in a statement.
What’s the word? Contribute to our list of cybersecurity terms to know
Here are the winners of the 2019 Maryland Cybersecurity Awards
Power Moves: Frank Bonsal III is leaving TU incubator, returning to venture capital
How SmartLogic accelerated these startups’ product growth trajectories
Baltimore’s ABS Capital Partners leads $23M Series A for Florida cybersecurity company
It’s Growing Industries month at Technical.ly. In Baltimore, we’re focusing on cybersecurity
Hear from the privacy pros at Security by the Schuylkill
This fast-growing SaaS company aims to be a force for change in the energy industry
Sign-up for daily news updates from Technical.ly Baltimore