Search

Zoom Zero-Day Exploit Being Sold by Hackers for $500,000: Report

An exploit for Zoom Windows client is a Remote Code Execution (RCE) that means hackers can gain access to the targets machine by running code.

Advertisement
Highlights
  • Zoom Windows exploit being sold for $500,000 (roughly Rs. 3.83 crore)
  • Exploits are available for both Windows and macOS
  • Zoom says there is no evidence of these exploits
Zoom Zero-Day Exploit Being Sold by Hackers for $500,000: Report

Zoom has been trying to address all of its security and privacy issues

Photo Credit: Zoom

Zoom is among the most used video conferencing apps and has gained a lot of users due to the ongoing coronavirus outbreak. But, there have been several security and privacy issues with the app and the team at Zoom is said to be trying to address all of them. Now, two “zero-day” flaws in the Zoom software have reportedly popped up online and exploits for these are being sold for huge sums of money. One of the flaws is present in the Windows version of Zoom client, whereas the other is part of the Zoom client for macOS.

According to a report by Motherboard, the exploit that takes advantage of ‘zero-day vulnerabilities' in Zoom's Windows client is up for sale via exploit brokers for $500,000 (roughly Rs. 3.83 crore). Zero-day flaws are unpatched and previously unknown vulnerabilities in a software or hardware.

Zoom vulnerabilities can allow someone to hack its users and spy on their calls, Motherboard states. The publication says three of its sources were contacted by brokers who were offering these exploits for sale.

“From what I've heard, there are two zero-day exploits in circulation for Zoom. [...] One affects OS X and the other Windows.. I don't expect that these will have a particularly long shelf-life because when a zero-day gets used it gets discovered,” the report quotes Adriel Desautels, the founder of Netragard, a company that used to sell and trade zero-days.

The exploit for Windows is a Remote Code Execution or RCE, as stated by one of the other two sources. These types of exploits allow hackers to execute code on the target's computer without having to rely on a phishing attack that generally depends upon deceiving the target into sharing personal information like bank account details. RCE also allows hackers to access the target's whole machine.

The exploit for Zoom for macOS is not RCE, “making it less dangerous and harder to use,” the report adds.

Zoom has responded to this report and said it did not find any evidence for these claims, Motherboard writes.

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: Zoom, Windows, macOS, Remote Code Execution
 
Show Full Article
Please wait...
Advertisement

Related Stories

Popular Mobile Brands
  1. Motorola Edge 60 Fusion Design Renders Surface Online Again
  2. OnePlus 13T Display, Battery Details Tipped; Could Launch in April
  3. Lava Shark With 50-Megapixel Camera, 5,000mAh Battery Launched in India
  4. Samsung Galaxy S26 Ultra Tipped to Get Triple Rear Cameras, Larger Battery
  5. Vivo Vision With Apple Vision Pro-Inspired Design Unveiled in China
  1. Assassin's Creed Shadows Said to Be Series' Second Biggest Launch Ever
  2. Samsung Galaxy S26 Ultra With Three Rear Cameras, Larger Battery Reportedly Under Testing
  3. Vivo Vision Mixed Reality Headset Unveiled China; Bears Striking Resemblance to Apple Vision Pro
  4. Vivo X Fold 4 May Launch in Q3 2025; Key Features Surface Online Again
  5. TRN Odyssey Programme Goes Live, Opens Funding Opportunities for Web3 Game Developers
  6. ADGM, Chainlink Sign MoU to Explore Compliant Tokenisation Rules, Cross-Chain Interoperability
  7. Samsung Ordered to Pay $601 Million in Back Taxes in India, Penalties Over Telecom Imports
  8. Optoma UHC70LV 4K UHD Projector With 5,000 Lumen Brightness, Dolby Vision Support Launched in India
  9. Swiggy Instamart Launches 10-Minute Smartphone Delivery Service in Select Indian Cities
  10. Government Ends Import Duty for Items Needed to Make EV Batteries, Phones
Gadgets 360 is available in
Download Our Apps
App Store App Store
Available in Hindi
App Store
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »