Zoom 0-Day - How Not to Handle a Vulnerability Report
Offered By: 0xdade via YouTube
Course Description
Overview
Explore a detailed account of the 2019 Zoom 0-Day vulnerability disclosure in this conference talk from Shmoocon 2020. Delve into the discovery of a critical security flaw allowing malicious actors to activate Mac users' cameras without consent, and the hidden daemon that persisted after uninstallation. Follow the speaker's journey through the vulnerability reporting process, the decision to go public, and the escalating consequences that ultimately required intervention from Apple's security team. Gain insights into the complexities of responsible disclosure, corporate responses to security threats, and the potential ramifications of software vulnerabilities in widely-used applications.
Syllabus
Intro
Who is Jonathan
Why Zoom
Disclosure
Going Public
Zooms Response
Questions
Taught by
0xdade
Related Courses
Chip Decapping on a Budget0xdade via YouTube Adventures in Hardware Hacking or Building Expensive Tools on a Budget
0xdade via YouTube Whitelisting LD PRELOAD for Fun and No Profit
0xdade via YouTube 5G Protocol Vulnerabilities and Exploits
0xdade via YouTube Real World Zero Trust Implementation
0xdade via YouTube