Zoom vulnerability lets websites access your Mac's camera without permission

15-inch MacBook Pro
15-inch MacBook Pro (Image credit: iMore)

What you need to know

  • A major Zoom vulnerability lets malicious websites access your Mac camera without permission.
  • Zoom was alterted of the issues by security researcher Jonathan Leitschuh back in March but did not roll out a fix.
  • After heavy backlash, Zoom has now rolled out an emergency patch to fix the issue.

Video conferencing app Zoom is yet the latest service to be hit with a major vulnerability that puts its users at risk. The zero-day vulnerability affecting Zoom lets websites access a Mac's camera without asking for permission.

The security issue was first discovered by Jonathan Leitschuh:

A vulnerability in the Mac Zoom Client allows any malicious website to enable your camera without your permission. The flaw potentially exposes up to 750,000 companies around the world that use Zoom to conduct day-to-day business.

In a Medium post, he outlined the issue and confirmed he related the issue to Zoom back in March but the company did little effort to curtail the security threat. What made the issue worse was that even if you uninstalled the app, the local host web server was still inside your machine, which could still be access by malicious websites.

After news broke, Zoom continued to ignore the issue with a tepid response that was nonchalant. It wasn't until its response was heavily criticized that Zoom jumped to action and rolled out an emergency security patch to fix the issue on July 9. The security patch is now live and can be downloaded through Zoom's site.

This latest issue of security continues to show how ill-prepared many companies are when dealing with vulnerabilities. Often times they hide behind statements before they spring into action.

Danny Zepeda
Latest in Macs
macOS Sequoia
macOS Sequoia (version 15) is now available for your Mac with some big upgrades
The Razer Huntsman V3 Pro Tenkeyless mechanical gaming keyboard against a yellow background.
Razer Huntsman V3 Pro Tenkeyless: Pro-level Mac gaming
Copilot key on Windows
Apple's new "best AI PC" Mac ads take aim at Microsoft's Copilot+ machines
Apple Logo
The iPhone 16 reveal is tomorrow, but details about Apple's next event have already leaked - including M4 Macs and new iPad models
MacBook Air deals
The 15-inch M3 MacBook Air is still insanely cheap on Amazon
M3 MacBook Pro review
M4 MacBook Pro could debut in November alongside a completely redesigned Mac mini
Latest in News
iMore Logo
One more thing… Goodbye from iMore
Jony Ive
Jony Ive’s OpenAI hardware device could be his next world-changing design
NEBULA Cosmos 4K SE with Apple TV
This new 4K projector is tempting me to replace my LG C2 TV, just so I can watch Slow Horses on a 200-inch display
VisionOS 2 app reorganization
visionOS 2 is the first major software update for Apple Vision Pro, and now it's available
macOS Sequoia
macOS Sequoia (version 15) is now available for your Mac with some big upgrades
watchOS 11
watchOS 11 is now rolling out to all Apple Watch users with the Series 6 or newer