SECURITY·중요도 9·2026. 08. 11.·The Hacker News
Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee's Client
── KO ──────────────────
줌의 주석 도구에 취약점이 발견되어 회의 참가자가 다른 사용자의 클라이언트를 탈취할 수 있음.
줌의 주석 도구에서 발견된 취약점으로 인해 화면을 공유하는 사용자가 회의에 참여하는 모든 사람의 컴퓨터를 제어할 수 있는 위험이 존재한다. 이 문제는 피해자가 회의에 참가하는 것만으로 발생할 수 있으며, 클릭이나 다운로드, 어떤 프롬프트도 요구하지 않는다. 이는 보안상 큰 우려를 야기하며 즉각적인 대처가 필요하다.
── EN ──────────────────
Zoom's annotation tool flaw could allow participants to hijack other attendees' clients.
A flaw in Zoom's annotation tool has been discovered that allows anyone sharing their screen to take control of the computers of all attendees. Similarly, any participant watching the screen could hijack the presenter's client without any action required from them, such as clicks or downloads. This poses a significant security concern and requires immediate attention.