Posts

Showing posts from April, 2020

Reducing impact of Zoom 0day Vulnerabilities

Image
Zoom 's software is well known for its poor security and privacy records. There has been recent outcry in the media about hackers selling Zoom 0 day Vulnerabilities in dark web. I tried some possible measures which we as an end user could do in order to limit impact of Zoom 0days. METHOD 1: Using Zoom in Web browser Most Web browsers restrict the amount of access a web page has on the device by restricting it in browser's sandbox. This effectively reduces the amount of damage an attacker can do to your device. Since a web page has less access to device compared to an App or Application it can lower risks of data compromise. However joining zoom meeting in browser has to enabled by the host in order to make this possible. METHOD 2: Using Zoom in a Sandbox According to Wikipedia , a sandbox is a security mechanism for separating running programs, usually in an effort to mitigate system failures or software vulnerabilities from spreading. It is often used to execut