Native software for anything that *can* be done on the web *is a mistake*:https://techcrunch.com/2020/04/01/zoom-doom/ …
-
-
You make a couple great points in this thread, but if an attacker has the access required to the physical device to exploit the bugs described, Zoom's security model is the least of your problems. IMO, the article is dramatically overstating the case.
-
It's not the instance, it's the trend. The thing about security is that posture is defines outcomes as much as testing. Previously: https://medium.com/bugbountywriteup/zoom-zero-day-4-million-webcams-maybe-an-rce-just-get-them-to-visit-your-website-ac75c83f4ef5 …https://www.theverge.com/2020/1/28/21082331/zoom-vulnerability-hacker-eavesdrop-security-google-hangouts-skype-checkpoint …
- 1 more reply
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.
& Web Standards TL; Blink API OWNER
Named PWAs w/
DMs open. Tweets my own; press@google.com for official comms.