AIToday
AI Safety & AlignmentThe Verge AIPublished: Aug 12, 2026, 04:00 JST

Zoom patches critical flaw exposed with under 20 AI prompts

Zoom patches critical flaw exposed with under 20 AI prompts

3 Key Points

  1. What happened

    Researchers at A Security discovered a major vulnerability in Zoom's annotation feature that allowed attackers to run malicious code on victims' devices during meetings. The flaw was uncovered using fewer than 20 prompts on publicly available AI models, and Zoom issued a patch on Tuesday covering Windows, macOS, Linux, Android, and iOS.

  2. Why it matters

    The exploit required no action from victims and left no visual trace of the compromise, making it particularly dangerous. Vulnerability researcher Idan Levcovich noted that "producing a working exploit against it has always been nation-state work: elite teams, months of effort, budgets that governments regulate as weapons" — but A Security accomplished it in a single day using widely accessible AI tools, suggesting the barrier to executing sophisticated attacks has dropped significantly.

  3. What to watch

    Users should ensure they have applied Zoom's patch across all their devices. The incident underscores how AI models available to the general public can now be used to discover and exploit security flaws that previously required state-level resources.

Not sure about something? Ask the AI

Questions and answers are published on this page.

Summaries like this, in your inbox every morning.

Context & Analysis

The Zoom vulnerability represents a watershed moment in the speed and accessibility of exploit development. Historically, uncovering and weaponizing zero-day flaws required elite teams with substantial budgets, resources that governments closely monitored. A Security's discovery using fewer than 20 AI prompts on off-the-shelf models suggests that barrier has collapsed. The annotation feature flaw is particularly insidious because it required no user action and left no trace—the hallmark of a sophisticated attack—yet it fell to a commercial tool in a single day.

The timing reflects a broader shift in the security landscape: as large language models and AI agents become more capable at reasoning through code and vulnerability patterns, the cost and skill floor for launching serious attacks has plummeted. Zoom's rapid patch across five major platforms (Windows, macOS, Linux, Android, iOS) demonstrates both the severity the company assigned and the urgency of limiting exposure. For organizations relying on Zoom, the incident serves as a concrete warning that vulnerabilities once assumed to require state-level sophistication may now be within reach of smaller teams armed with accessible AI.

FAQ
How did the attacker exploit Zoom without the user noticing?
The exploit used Zoom's annotation feature, which allows users to draw on their screen during meetings. Once activated, it could run malicious code on victims' devices with no visual cue indicating the compromise, according to A Security.
What could the attacker do once inside a device?
An attacker could steal data, turn on the camera or microphone, or install malware on the victim's device.
How quickly was the vulnerability discovered?
Researchers at A Security uncovered the flaw using fewer than 20 prompts on publicly available AI models, accomplishing in a single day work that has historically required nation-state teams, months of effort, and government-regulated budgets.

AI news that matters for your work, delivered every morning.

Pick your industry and the AI tools you use, and get news related to your work every day.

Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →

Ask AI

Ask AI anything about this article. The AI reads this article, earlier AIToday articles, and Wikipedia, and cites its sources. Q&As are published on this page for other readers too.

Questions and answers are published on this page.

Related Articles

Next articleGoogle's Gemini app hits 1 billion monthly active users