Skip to main content

Latest Status of Vulnerabilities in Zoom

Due to Covid-19, the situation of working remotely is spreading all over the world. As a natural consequence of this, the use of video conferencing software is also increasing. One of the most used software in this area is Zoom.

It has become a favorite of many users in a short time with its features such as Zoom, easy usage and virtual background. However, with the detection of security holes recently, black shadows fell on the application.

Of course, Zoom published a statement in a short time; A Message to Our Users. The article talks about the large number of users reached in a short time due to the developments;

"We also feel an immense responsibility. Usage of Zoom has ballooned overnight – far surpassing what we expected when we first announced our desire to help in late February. This includes over 90,000 schools across 20 countries that have taken us up on our offer to help children continue their education remotely.

To put this growth in context, as of the end of December last year, the maximum number of daily meeting participants, both free and paid, conducted on Zoom was approximately 10 million. In March this year, we reached more than 200 million daily meeting participants, both free and paid..."

So what are the vulnerabilities in Zoom or what measures have been taken? IT media technology editor Ken Miyata has published a nice article describing his observations and comments about the vulnerability in Zoom.

For example, there is a service for Mac users regarding the installation of the application without clicking. However, some users do this; "Turns out they (ab) use preinstallation scripts, manually unpack the app using a bundled 7zip and install it to / Applications if the current user is in the admin group (no root needed)." criticized with comments in the form.

Eric Yuan, CEO of Zoom, gave the following answer;

" Thank you for your feedback! We implemented to balance the number of clicks given the limitations of the standard technology. To join a meeting from a Mac is not easy, that is why this method is used by Zoom and others. Your point is well taken and we will continue to improve."

You can read other observations and suggestions about Zoom from Miyata's article.

what? ySense! yeeah!

Comments

Popular posts from this blog

Markaların Ölümle Dansı

Martin Lindstrom’un Buy.ology kitabı tam anlamıyla bir “bomba”. Yeni bitirdiğim kitaptan aldığım notları kısa kısa paylaşacağım. İşte bunlardan ilki; Amerika’da piyasaya sürülen her on üründen sekizinin kaderi başarısızlığa mahkum. 2005’te tüm dünya mağazalarının vitrinlerinde ilk kez yer alan 156.000 ürün , piyasaya her üç dakikada bir yeni bir ürün çıktığına işaret ediyordu. IXP pazarlama grubuna göre, dünya çapında her yıl kabaca 21.000 yeni marka piyasaya çıkıyor, ancak bunların %90’ı bir yıla kalmadan raflardan kayboluyor. Tüketici ürünlerinde tüm yeni markaların %52’si ve bireysel ürünlerin %75’i tutunamıyor. Peki buna çare ne? İnsanlara “Artık yeni marka üretmeyin!” diyemeyeceğinize göre markaların satın alma psikolojimizdeki yerini tespit etmek daha iyi bir çözüm. Yani biz hangi markaları nasıl, neden seçiyoruz?’un cevabı önemli. Ya da hangi markaları tercih etmiyoruz’un cevabı. Lindstrom’un buna cevabı; Nöropazarlama (neuromarketing). Nöropazarlama, kısaca beynimiz...

The Age of Companies’ Struggle with Invoice is Ending!

The transition to e-invoice is a revolutionary decision. This is because, in addition to preventing unnecessary paper consumption, easier tracking of invoice tax amounts charged by companies and of course the  digitalization  of finance / accounting departments was provided. So who provides this service? Provider companies working with RA are providing the basic service for receiving and sending invoices. These companies offer services in creating, sending / receiving e-invoices and reporting with the environments they provide. So far everything is very nice and ideal. The only problem is; Some things have never changed for companies with a large number of invoices. Still the manager / managers have to check and approve the invoices one by one. In short, this is also a process. It is a serious process that requires a lot of effort and time. This process requirement brought forward the idea of  ​​integrating  e-invoice providers with BPM ( process management ) applica...

Corona En Güzel Nasıl İçilir? - How to Drink Corona?

Corona, bizde pek yaygın tüketilmese de dünya çapında epey hayranı olan bir bira markası. Corona’nın bu kadar sevilen ve ünlü olmasının sebeplerinden biri de içim şekli. Corona is a beer brand that has many fans around the world, although it is not widely consumed in our country. One of the reasons why Corona is so popular and famous is the way I drink. Corona, sıkılıp şişenin ağzından içine tıkılan bir parça limonla içilen; yani böyle bir içme ritüeli olan bir bira. Elbette normal de içebilirsiniz ama Corona’yı Corona yapan onun böyle içiliyor olması.  Corona, a piece of lemon that is squeezed and clicked from the mouth of the bottle; that is, a beer with such a drinking ritual. Of course, you can also drink normally, but that's what makes Corona Corona so. Peki bu ritüel nereden geliyor? Bu, Latin kültürüne özel, biranın tadını güzelleştirdiğine inanılan bir ritüel olup, dünyaya böyle yayılmış olabilir mi? So where does this ritual come from? This is a ritual specia...