HeadlinesBriefing favicon HeadlinesBriefing.com

Zoom screen-sharing bug allows remote code execution

Engadget •
×

Cybersecurity researchers discovered a bug in Zoom's screen-sharing feature that lets attackers take control of another device. The vulnerability affects Zoom Workspace app on Windows, Mac, iOS, Android, and Linux. Attacks require no victim action and leave no visible warning.

When a user launches the annotation tool while sharing the screen, bad actors can remotely execute malicious code.\n\nResearchers developed the exploit using AI in under 24 hours, illustrating how AI assists cyberattacks. The cybersecurity firm noted that such exploits previously required nation-state resources but are now accessible to single researchers. Zoom deployed fixes for all affected versions before August 10, 2026.

Users are urged to apply latest updates.\n\nSeparately, Apple fixed a critical macOS Screen Sharing flaw that could let attackers on the same network bypass authentication. Updates were released for Tahoe 26.6.1, Sequoia 15.7.9, and Sonoma 14.8.9.