Zoom (software)
Zoom is a videotelephony software program developed by Zoom Video Communications. It provides a video chatting service that allows up to 100 devices at once for free, with a 40-minute time restriction for free accounts having meetings of three or more participants. Users have the option to upgrade by subscribing to one of its plans, with the highest allowing up to 1,000 people concurrently, with no time restriction.[3]
Zoom client version 5.1.2 running on Windows 10 version 2004 | |
Original author(s) | Eric Yuan |
---|---|
Developer(s) | Zoom Video Communications |
Initial release | January 25, 2013 |
Stable release | 5.2.0
/ August 4, 2020 |
Operating system | Windows, macOS, Linux, Android, iOS |
Available in | 11 languages[1] |
Type | Videoconferencing, VoIP, and Instant messaging |
License | Freemium |
Alexa rank | |
Website | zoom.us |
During the COVID-19 pandemic, Zoom has seen a major increase in usage for remote work, distance education,[4] and online social relations.[5]
History
A beta version of Zoom was launched in September 2012 that could host conferences with up to 15 video participants.[6] In January 2013, version 1.0 of the program was released with an increase in the number of participants per conference to 25.[7] By the end of its first month, Zoom had 400,000 users, which rose to 1 million by May 2013.[8] After the start of the COVID-19 pandemic, by February 2020, Zoom had gained 2.22 million users in 2020 — more users than it amassed in the entirety of 2019.[9] On one day in March 2020, the Zoom app was downloaded 2.13 million times.[10][11] In April 2020, Zoom had more than 300 million daily meeting participants.[12]
Features
Zoom is compatible with Windows, macOS, iOS, Android, Chrome OS and Linux. It is noted for its simple interface and usability, specifically for non-tech people.[13][14] Features include one-on-one meetings, group video conferences, screen sharing, plugins, browser extensions, and the ability to record meetings and have them automatically transcribed.[15] On some computers and operating systems, users are able to select a virtual background, which can be downloaded from different sites, to use as a backdrop behind themselves.[16]
Use of the platform is free for video conferences of up to 100 participants at once, with a 40-minute time limit if there are more than two participants. For longer or larger conferences with more features, paid subscriptions are available, costing $15–20 per month. Features geared towards business conferences, such as Zoom Rooms, are available for $50–100 per month.[17][13][16] Up to 49 people can be seen on a screen at once.[18] Zoom has several tiers: Basic, Pro, Business, and Enterprise.[19] Participants do not have to download the app if they are using Google Chrome or Firefox; they can click on a link and join from the browser. Zoom is not compatible with Safari for Macs.[16]
Zoom security features include password protected meetings, user authentication, waiting rooms, locked meetings, disabling participant screen sharing, randomly generated IDs, and the ability for the host to remove disruptive attendees.[20] As of June 2020, Zoom will soon begin offering end-to-end encryption to business and enterprise users, with AES 256 GCM encryption enabled for all users.[21]
Zoom also offer a transcription service using Otter.ai software that allows businesses to store transcriptions of the Zoom meetings online and search them, including separating and labeling different speakers.[22]
As of July 2020, Zoom Rooms and Zoom Phone are also available as hardware as a service products.[23] Zoom for Home, a category of products designed for home use, is expected to be available in August 2020.[24]
Usage
Zoom has been used by banks, universities, and government agencies around the world,[25] by the UK Parliament,[26] by healthcare professionals for telemedicine,[27] barbershops,[28] and ceremonies such as birthday parties,[29] funeral services,[30] and Bar and Bat Mitzvah services.[31][32] Zoom formed a partnership with Formula One to create a virtual club where fans can go behind the scenes and take part in virtual activities through Zoom, beginning with the Hungarian Grand Prix on July 19, 2020.[33][34] An article published in July 2020 in the San Francisco Chronicle noted a new real estate trend in San Francisco and Oakland where some listings include "Zoom rooms" with backdrops for Zoom calls.[35]
Richard Nelson's play What Do We Need to Talk About? takes place on Zoom, with its main characters congregating online during the coronavirus pandemic using Zoom. Written and directed by Nelson, it was commissioned by The Public Theater and premiered on YouTube on April 29, 2020, as a benefit performance. The New Yorker called it "the first great original play of quarantine".[36] Oprah's Your Life in Focus: A Vision Forward was a live virtual experience hosted by Oprah Winfrey on Zoom from May 16 through June 6, 2020.[37] In Source Material's play In These Uncertain Times, directed by Samantha Shay, characters communicate on Zoom. The play premiered on Zoom on July 25, 2020.[38]
Reception
Zoom has been criticized for "security lapses and poor design choices" that have resulted in heightened scrutiny of its software.[39][40] Many of Zoom's issues "surround deliberate features designed to reduce friction in meetings", which Citizen Lab found to "also, by design, reduce privacy or security".[41][42] In March 2020, New York State Attorney General Letitia James launched an inquiry into Zoom's privacy and security practices;[43] the inquiry was closed on May 7, 2020, with Zoom not admitting wrongdoing, but agreeing to take added security measures.[44] In April 2020, CEO Yuan apologized for the security issues, stating that some of the issues were a result of Zoom's having been designed for "large institutions with full IT support";[45] he noted that in December 2019, Zoom had a maximum of 10 million daily users, and in March 2020 the software had more than 200 million daily users, bringing the company increased challenges.[46] Zoom agreed to focus on data privacy and issue a transparency report.[47][48][49][50] In April 2020, the company released Zoom version 5.0, which addressed a number of the security and privacy concerns. It includes passwords by default, improved encryption, and a new security icon for meetings.[51]
As of April 2020, businesses, schools, and government entities who have restricted or prohibited the use of Zoom on their networks include Google,[52] Siemens,[53] the Australian Defence Force, the German Ministry of Foreign Affairs, the Indian Ministry of Home Affairs, SpaceX, and the New York City Department of Education.[54][55] In May 2020, the New York City Department of Education lifted their ban on Zoom after the company addressed security and privacy concerns.[56]
Privacy
Zoom has been criticized for its privacy and corporate data sharing policies, as well as enabling video hosts to potentially violate the privacy of those participating in their calls.[57][58][59] There may also be issues with unauthorized surveillance of students and possible violations of students’ rights under the Family Educational Rights and Privacy Act (FERPA).[60] According to the company the video services are FERPA-compliant, and it collects and stores user data only for tech support.[60]
In March 2020, a Motherboard article found that the company's iOS app was sending device analytics data to Facebook on startup, regardless of whether a Facebook account was being used with the service, and without disclosing it to the user.[61] Zoom responded that it had recently been made aware of the issue, and had patched the app to remove the SDK after learning that it was collecting unnecessary device data. The company stated that the SDK was collecting information on the user's device specifications (such as model names and operating system versions) only in order to optimize its service and that it was not collecting personal information.[16][62][63] In the same month, Zoom was sued by a user in U.S. Federal Court for illegally and secretly disclosing personal data to third parties including Facebook.[64] Zoom responded that it "has never sold user data in the past and has no intention of selling users' data going forward."[65]
In April 2020, a Zoom data-mining feature was found that automatically sent user names and email addresses to LinkedIn, allowing some participants to surreptitiously access LinkedIn profile data about other users.[66] The companies disabled their integration.[67] In May 2020, the Federal Trade Commission announced that it was looking into Zoom's privacy practices.[68]
Security
In November 2018, a security vulnerability was discovered that allowed a remote unauthenticated attacker to spoof UDP messages that allowed the attacker to remove attendees from meetings, spoof messages from users, or hijack shared screens.[69][70] The company released fixes shortly after the vulnerability was discovered.[71]
In July 2019, security researcher Jonathan Leitschuh disclosed a zero-day vulnerability allowing any website to force a macOS user to join a Zoom call, with their video camera activated, without the user's permission.[72] Attempts to uninstall the Zoom client on macOS would prompt the software to re-install automatically in the background, using a hidden web server that was set up on the machine during the first installation and remained active even after attempting to remove the client. After receiving public criticism, Zoom removed the vulnerability and the hidden webserver, allowing complete uninstallation.[73]
In April 2020, security researchers found vulnerabilities where Windows users' credentials could be exposed.[74][75] Another vulnerability allowing unprompted access to cameras and microphones was made public.[76][77] Zoom issued a fix in April 2020.[78] In the same month, "Zoombombing", when an unwanted participant joins a meeting to cause disruption, prompted a warning from the Federal Bureau of Investigation.[79][80][81][82] Motherboard reported that there were two Zoom zero-days for macOS and Windows respectively, selling for $500,000, on April 15, 2020.[83] Security bug brokers were selling access to Zoom security flaws that could allow remote access into users' computers.[14] Hackers also put up over 500,000 Zoom user names and passwords for sale on the dark web.[14] In response to the multitude of security and privacy issues found, Zoom began a comprehensive security plan, which included consulting with Luta Security, Trail of Bits, former Facebook CSO Alex Stamos, former Google global lead of privacy technology Lea Kissner, BishopFox, the NCC Group, and Johns Hopkins University cryptographer Matthew D. Green.[84] On April 20, 2020, the New York Times reported that Dropbox engineers had traced Zoom's security vulnerabilities back over two years, pushing Zoom to address such issues more quickly, and paying top hackers to find problems with Zoom's software. In the same article, the New York Times noted that security researchers have praised Zoom for improving its response times, and for quickly patching recent bugs and removing features that could have privacy risks.[14] In April 2020, Zoom made many of its security settings default settings, and advised users on ways to mitigate Zoombombing.[13][16] In a blog post on April 1, 2020, Yuan announced a 90-day freeze on releasing new features, to focus on fixing privacy and security issues within the platform.[85] The company created a new "report a user to Zoom" button, intended to catch those behind Zoombombing attacks.[86] On July 1, 2020, at the end of the freeze, the company stated it had released 100 new safety features over the 90-day period. Those efforts include end-to-end encryption for all users, turning on meeting passwords by default, giving users the ability to choose which data centers calls are routed from, consulting with security experts, forming a CISO council, an improved bug bounty program, and working with third parties to help test security. Yuan also stated that Zoom would be sharing a transparency report later in 2020.[87][88]
Encryption practices
Zoom encrypts its public data streams, using TLS 1.2 with AES-256 (Advanced Encryption Standard) to protect signaling, and AES-128 to protect streaming media.[89]
Security researchers and reporters have criticized the company for its lack of transparency and poor encryption practices. Zoom initially claimed to use "end-to-end encryption" in its marketing materials,[90] but later clarified it meant "from Zoom end point to Zoom end point" (meaning effectively between Zoom servers and Zoom clients), which The Intercept described as misleading and "dishonest".[91] Alex Stamos, a Zoom advisor who was formerly security chief at Facebook, noted that a lack of end-to-end encryption is common in such products, as it is also true of Google Hangouts, Microsoft Teams, and Cisco Webex.[92] On May 7, 2020, Zoom announced that it had acquired Keybase, a company specializing in end-to-end encryption, as part of an effort to strengthen its security practices moving forward.[93][94] Later that month, Zoom published a document for peer review, detailing its plans to ultimately bring end-to-end encryption to the software.[95]
In April 2020, Citizen Lab researchers discovered that a single, server-generated AES-128 key is being shared between all participants in ECB mode, which is deprecated due to its pattern-preserving characteristics of the ciphertext.[96] During test calls between participants in Canada and United States the key was provisioned from servers located in mainland China where they are subject to the China Internet Security Law.[41]
On June 3, 2020, Zoom announced that users on their free tier will not have access to end-to-end encryption so that they could cooperate with the FBI and law enforcement.[97] Later, they said that they do not “proactively monitor meeting content”.[98] On June 17, 2020, the company reversed course and announced that free users would have access to end-to-end encryption after all.[99]
Data routing
Zoom admitted that some calls in early April 2020 and prior were mistakenly routed through servers in mainland China, prompting governments and businesses to cease their usage of Zoom.[100] The company later announced that data of free users outside of China will “never be routed through China” and that paid subscribers will be able to customize which data center regions they want to use. The company has data centers in Europe, Asia, North America, and Latin America.[101][102]
Censorship
An April 2020 Citizen Lab report warned that having much of Zoom's research and development in China could "open up Zoom to pressure from Chinese authorities".[41] On June 1, 2020, Zoom closed the paid account of human rights activist Zhou Fengsuo a week after he held an event discussing the 1989 Tiananmen Square protests.[103][104] Social activist Lee Cheuk Yan's account was also closed in early May 2020.[103] In June 2020 Zoom acknowledged that it had terminated two accounts belonging to U.S. users and one of a user from Hong Kong connected to meetings discussing 1989 Tiananmen Square protests;[105] the accounts were later re-opened, with the company stating that in the future it "will have a new process for handling similar situations."[106] Zoom also announced upcoming technology that could prevent participants from specific countries from joining calls that were deemed illegal in those areas.[105]
See also
References
- "Change your language on Zoom". support.zoom.us. Retrieved June 24, 2020.
- "zoom.us Competitive Analysis, Marketing Mix and Traffic - Alexa". www.alexa.com. Retrieved August 4, 2020.
- "Plans and Pricing - Zoom". zoom.us. Retrieved June 24, 2020.
- Abbott, Eileen (April 20, 2020). "Students and teachers struggle with remote education due to coronavirus". TheHill. Retrieved April 21, 2020.
- Lorenz, Taylor; Griffith, Erin; Isaac, Mike (March 17, 2020). "We Live in Zoom Now". The New York Times. ISSN 0362-4331. Archived from the original on March 23, 2020. Retrieved March 23, 2020.
- Mossberg, Walter S. (August 21, 2012). "A Chance To Call 15 Friends To Video Chat In High Def". The Wall Street Journal. Archived from the original on April 8, 2020. Retrieved April 13, 2020.
- "Zoom Raises $6M Series A, Launches Version 1.0 Of Its". TechCrunch. January 28, 2013. Archived from the original on September 23, 2016. Retrieved May 14, 2020.
- Pleasant, Robbie (May 23, 2013). "Zoom Video Communications Reaches 1 Million Participants". TMCnet. Archived from the original on October 4, 2019. Retrieved July 21, 2014.
- Novet, Jordan (February 26, 2020). "Zoom has added more videoconferencing users this year than in all of 2019 thanks to coronavirus, Bernstein says". CNBC. Archived from the original on March 4, 2020. Retrieved March 31, 2020.
- Neate, Rupert (March 31, 2020). "Zoom booms as demand for video-conferencing tech grows". The Guardian. Archived from the original on April 22, 2020. Retrieved April 29, 2020.
- Fry, Naomi (April 27, 2020). "Embracing the Chaotic Side of Zoom". The New Yorker. Archived from the original on April 27, 2020. Retrieved April 29, 2020.
- Isaac, Mike (April 24, 2020). "Zoom's Biggest Rivals Are Coming for It". New York Times. Retrieved July 30, 2020.
- Vigliarolo, Brandon (April 30, 2020). "Zoom: A cheat sheet about the video conferencing solution". TechRepublic. Archived from the original on April 23, 2020. Retrieved April 30, 2020.
- Singer, Natasha (April 20, 2020). "Zoom's Security Woes Were No Secret to Business Partners Like Dropbox". New York Times. Archived from the original on April 23, 2020. Retrieved April 30, 2020.
- Tillman, Maggie (April 24, 2020). "What is Zoom and how does it work? Plus tips and tricks". Pocket-lint. Archived from the original on May 21, 2020. Retrieved April 30, 2020.
- Nguyen, Nicole (April 2, 2020). "Don't Get Bombed: How to Host Zoom Meetings, Hangouts, Houseparty and More". Wall Street Journal. Archived from the original on April 22, 2020. Retrieved April 30, 2020.
- "Zoom Meeting Plans for Your Business". Zoom Video Communications. Archived from the original on April 6, 2020. Retrieved November 29, 2017.
- Tilley, Aaron (June 2, 2020). "Microsoft Takes On Zoom and Slack in a Battle for Your Work Computer". Wall Street Journal. Archived from the original on June 5, 2020. Retrieved June 8, 2020.
- Perino, Marissa (March 26, 2020). "How to upgrade your Zoom account from a basic plan to host larger group meetings and more". Business Insider. Archived from the original on April 2, 2020. Retrieved April 30, 2020.
- Osborne, Charlie (April 22, 2020). "Zoom security: Your meetings will be safe and secure if you do these 10 things". ZDNet. Archived from the original on April 21, 2020. Retrieved June 8, 2020.
- Gilbert, Ben (June 3, 2020). "Zoom isn't beefing up security for free users so that it's better able to 'work with law enforcement'". Business Insider. Archived from the original on June 9, 2020. Retrieved June 8, 2020.
- "From Your Mouth to Your Screen, Transcribing Takes the Next Step". The NY Times. June 13, 2020. Retrieved June 14, 2020.
- Sevilla, Gadjo (July 7, 2020). "Zoom Launches Hardware-as-a-Service Products". PC Magazine. Retrieved July 30, 2020.
- Tilley, Aaron (July 15, 2020). "Zoom Targets Prolonged Remote-Work Era as Coronavirus Drags On". Wall Street Journal. Retrieved July 30, 2020.
- Sabbagh, Dan (April 24, 2020). "UK government told not to use Zoom because of China fears". The Guardian. Archived from the original on May 6, 2020. Retrieved June 8, 2020.
- Hodge, Rae (May 8, 2020). "Zoom security issues: Zoom buys security company, aims for end-to-end encryption". CNET. Archived from the original on May 12, 2020. Retrieved June 8, 2020.
- Span, Paula (May 8, 2020). "With Red Tape Lifted, Dr. Zoom Will See You Now". New York Times. Archived from the original on May 12, 2020. Retrieved June 8, 2020.
- Herrera Greenspan, Hannah (May 21, 2020). "Using Zoom, Chicago hair stylists help clients cut and color their own hair at home". Chicago Tribune. Archived from the original on June 8, 2020. Retrieved June 8, 2020.
- Nierenberg, Amelia (May 2, 2020). "Go Ahead, Blow Out the Candles on Zoom". New York Times. Archived from the original on May 10, 2020. Retrieved June 8, 2020.
- Li, Sara (May 7, 2020). "Zoom funerals are a new reality in quarantine. This is what they're like". Insider. Retrieved June 8, 2020.
- Springer, Shira (May 16, 2020). "For Some, Zoom Bar And Bat Mitzvahs Highlight 'Most Meaningful And Memorable Moments'". NPR. Archived from the original on June 11, 2020. Retrieved June 8, 2020.
- Robbins, Roni (April 12, 2020). "Zoom Mitzvah". Atlanta Jewish Times. Archived from the original on April 26, 2020. Retrieved June 8, 2020.
- Impey, Steven (July 16, 2020). "F1 calls on Zoom to deliver virtual race-day fan experience". Sports Pro Media. Retrieved July 30, 2020.
- Hall, Sam (July 16, 2020). "F1 and Zoom partner to create a Virtual Paddock Club". GP Fans. Retrieved July 30, 2020.
- Chamings, Andrew (July 27, 2020). "The 'Zoom room' boom: A very 2020 real estate trend". San Francisco Chronicle. Retrieved July 30, 2020.
- Schwartz, Alexandra (May 18, 2020). "The First Great Original Play of Quarantine". The New Yorker. Retrieved June 8, 2020.
- "Oprah Winfrey to Launch Live Virtual Experience on Wellness". The Hollywood Reporter. May 12, 2020. Archived from the original on June 8, 2020. Retrieved June 8, 2020.
- Phillips, Maya (July 26, 2020). "'In These Uncertain Times' Review: Love, Loss and Zoom". New York Times. Retrieved July 30, 2020.
- "Zoom under increased scrutiny as popularity soars". BBC News. April 1, 2020. Archived from the original on April 1, 2020. Retrieved April 1, 2020.
- Lopez, Napier (April 22, 2020). "Zoom's 5.0 update helps stop zoombombing and improves encryption". The Next Web. Archived from the original on May 8, 2020. Retrieved April 29, 2020.
- Marczak, Bill; Scott-Railton, John (April 3, 2020). "Move Fast & Roll Your Own Crypto: A Quick Look at the Confidentiality of Zoom Meetings". Citizen Lab. Archived from the original on April 12, 2020. Retrieved April 4, 2020.
- Donnell (April 1, 2020). "Two Zoom Zero-Day Flaws Uncovered". Threatpost. Archived from the original on April 21, 2020. Retrieved April 29, 2020.
- Hakim, Danny; Singer, Natasha (March 30, 2020). "New York Attorney General Looks Into Zoom's Privacy Practices". The New York Times. ISSN 0362-4331. Archived from the original on April 2, 2020. Retrieved March 31, 2020.
- Feiner, Lauren (May 8, 2020). "Zoom strikes a deal with NY AG office, closing the inquiry into its security problems". CNBC. Archived from the original on May 15, 2020. Retrieved June 4, 2020.
- Iyengar, Rishi (April 2, 2020). "Zoom CEO apologizes for having 'fallen short' on privacy and security". CNN. Archived from the original on April 8, 2020. Retrieved April 3, 2020.
- Warren, Tom (April 2, 2020). "Zoom announces 90-day feature freeze to fix privacy and security issues". The Verge. Archived from the original on May 11, 2020. Retrieved May 26, 2020.
- Hern, Alex (April 2, 2020). "Zoom says engineers will focus on security and safety issues". The Guardian. ISSN 0261-3077. Archived from the original on April 9, 2020. Retrieved April 5, 2020.
- Bellovin, Steven M. (April 2, 2020). "Zoom Security: The Good, the Bad, and the Business Model". Columbia University. Archived from the original on April 6, 2020. Retrieved April 5, 2020.
- Paul, Kari (April 2, 2020). "'Zoom is malware': why experts worry about the video conferencing platform". The Guardian. ISSN 0261-3077. Archived from the original on April 10, 2020. Retrieved April 5, 2020.
- "Is Zoom safe and can it be hacked?". The Independent. April 2, 2020. Archived from the original on April 8, 2020. Retrieved April 5, 2020.
- Warren, Tom (April 22, 2020). "Zoom releases 5.0 update with security and privacy improvements". The Verge. Archived from the original on April 22, 2020. Retrieved May 8, 2020.
- "Archived copy". Archived from the original on May 15, 2020. Retrieved May 13, 2020.CS1 maint: archived copy as title (link)
- Jitendra Soni (April 15, 2020). "More top companies ban Zoom following security fears". Techradar. Archived from the original on April 21, 2020. Retrieved April 22, 2020.
Among the latest organisations to block the use of Zoom are German industrial giant Siemens, which sent out an internal circular urging its employees to not use the tool for video conferencing, with Standard Chartered Bank also issuing a similar note to its staff.
- Vigliarolo, Brandon (April 9, 2020). "Who has banned Zoom? Google, NASA, and more". techPresident. Archived from the original on April 13, 2020. Retrieved April 14, 2020.
- "MHA issues Advisory on Secure use of ZOOM Meeting Platform". pib.gov.in. Retrieved April 16, 2020.
- Zaveri, Paayal (May 6, 2020). "The NYC Department of Education is reversing its ban on Zoom after the company addresses its security and privacy concerns". Business Insider. Retrieved June 15, 2020.
- St. John, Allen (March 24, 2020). "Zoom Calls Aren't as Private as You May Think. Here's What You Should Know". Consumer Reports. Archived from the original on March 25, 2020. Retrieved March 26, 2020.
- O'Flaherty, Kate (March 25, 2020). "Zoom's A Lifeline During COVID-19: This Is Why It's Also A Privacy Risk". Forbes. Archived from the original on March 26, 2020. Retrieved March 27, 2020.
collects and stores personal data and shares it with third parties such as advertisers. But Zoom’s policy also covers what it labels "customer content", or "the content contained in cloud recordings, and instant messages, files, whiteboards ... shared while using the service". This includes videos, transcripts that can be generated automatically, documents shared on screen, and the names of everyone on a call.
- Morse, Jack (March 13, 2020). "Zoom is a work-from-home privacy disaster waiting to happen". Mashable. Archived from the original on March 26, 2020. Retrieved March 26, 2020.
- St. Amour, Madeline (March 25, 2020). "Pivot to online raises concerns for FERPA, surveillance". Inside Higher Ed. Archived from the original on April 5, 2020. Retrieved March 26, 2020.
- Cox, Joseph (March 26, 2020). "Zoom iOS App Sends Data to Facebook Even if You Don't Have a Facebook Account". Vice. Archived from the original on April 10, 2020. Retrieved March 27, 2020.
- Cox, Joseph (March 27, 2020). "Zoom Removes Code That Sends Data to Facebook". Vice. Archived from the original on April 2, 2020. Retrieved March 28, 2020.
- Tung, Liam (March 30, 2020). "Zoom to iPhone users: We're no longer sending your data to Facebook". ZDNet. Archived from the original on March 31, 2020. Retrieved April 13, 2020.
- Rosenblatt, Joel (March 31, 2020). "Zoom Sued for Allegedly Illegally Disclosing Personal Data". Bloomberg News. Archived from the original on April 6, 2020. Retrieved March 31, 2020.
- Finnegan, Matthew (April 9, 2020). "Zoom hit by investor lawsuit as security, privacy concerns mount". Computer World. Retrieved July 30, 2020.
- Krolik, Aaron; Singer, Natasha (April 2, 2020). "A Feature on Zoom Secretly Displayed Data From People's LinkedIn Profiles". The New York Times. Archived from the original on April 3, 2020. Retrieved April 3, 2020.
as high school students in Colorado signed in to a mandatory video meeting for a class, Zoom readied the full names and email addresses of at least six students — and their teacher — for possible use by its LinkedIn profile-matching tool
- Chin, Monica (April 2, 2020). "Zoom has disabled a feature that was exposing users' LinkedIn profiles". The Verge. Archived from the original on April 13, 2020. Retrieved April 13, 2020.
- Bartz, Diane (May 12, 2020). "U.S. FTC indicates it is looking at Zoom privacy woes". Reuters. Retrieved June 24, 2020.
- "CVE-2018-15715". National Vulnerability Database. November 30, 2018. Archived from the original on July 9, 2019. Retrieved July 9, 2019.
- CVE-2018-15715
- "Security: CVE-2018-15715". Zoom. Archived from the original on May 19, 2020. Retrieved May 13, 2020.
- Leitschuh, Jonathan (July 9, 2019). "Zoom Zero Day: 4+ Million Webcams & maybe an RCE? Just get them to visit your website!". Medium. Archived from the original on July 9, 2019. Retrieved July 9, 2019.
- Anderson, Tim (July 9, 2019). "Anyone for unintended Chat Roulette? Zoom installs hidden Mac web server to allow auto-join video conferencing". The Register. Archived from the original on July 9, 2019. Retrieved July 9, 2019.
- Goodin, Dan (April 1, 2020). "Attackers can use Zoom to steal users' Windows credentials with no warning". Ars Technica. Archived from the original on April 1, 2020. Retrieved April 2, 2020.
The vulnerability was first described last week by a researcher who uses the Twitter handle @_g0dmode. He wrote: “#Zoom chat allows you to post links such as \\x.x.x.x\xyz to attempt to capture Net-NTLM hashes if clicked by other users.
- Abrams, Lawrence (March 31, 2020). "Zoom Lets Attackers Steal Windows Credentials, Run Programs via UNC Links". Bleeping Computer. Archived from the original on April 5, 2020. Retrieved April 2, 2020.
- "The Zoom Privacy Backlash Is Only Getting Started". Wired. April 1, 2020. Archived from the original on April 6, 2020. Retrieved April 6, 2020.
- CVE-2020-11470
- "Update: Zoom issues fix for UNC vulnerability that lets hackers steal Windows credentials via chat". PC World.
- Bond, Shannon (April 3, 2020). "A Must For Millions, Zoom Has A Dark Side — And An FBI Warning". NPR. Archived from the original on April 8, 2020. Retrieved April 9, 2020.
- "FBI Warns of Teleconferencing and Online Classroom Hijacking During COVID-19 Pandemic" (Press release). Federal Bureau of Investigation. March 30, 2020. Archived from the original on April 9, 2020. Retrieved April 2, 2020.
- Hern, Alex (March 27, 2020). "Trolls exploit Zoom privacy settings as app gains popularity". The Guardian. ISSN 0261-3077. Archived from the original on April 8, 2020. Retrieved April 5, 2020.
- Lorenz, Taylor (March 20, 2020). "'Zoombombing': When Video Conferences Go Wrong". The New York Times. Archived from the original on March 27, 2020. Retrieved May 13, 2020.
- Franceschi-Bicchierai, Lorenzo (April 15, 2020). "Hackers Are Selling a Critical Zoom Zero-Day Exploit for $500,000". Vice. Archived from the original on April 23, 2020. Retrieved April 16, 2020.
- Cimpanu, Catalin. "Zoom to revamp bug bounty program, bring in more security experts". ZDNet. Archived from the original on April 16, 2020. Retrieved May 11, 2020.
- McMillan, Robert (April 16, 2020). "Zoom Hires Security Heavyweights to Fix Flaws". Wall Street Journal. Archived from the original on May 10, 2020. Retrieved May 26, 2020.
- Kan, Michael (April 20, 2020). "Got a Zoom-Bombing Problem? Zoom Will Soon Let You Report Attacks in Real Time". PC Magazine. Archived from the original on May 5, 2020. Retrieved May 26, 2020.
- Peters, Jay (July 1, 2020). "Zoom promises its first transparency report later this year". The Verge. Retrieved July 30, 2020.
- Cruze, Danny (July 2, 2020). "Zoom released 100 new security features in 90 days". Live Mint. Retrieved July 30, 2020.
- "Encryption for Meetings". Zoom Video Communications. Archived from the original on April 8, 2020. Retrieved April 7, 2020.
- "Advanced Encryption for Chat". Zoom Video Communications. Archived from the original on April 7, 2020. Retrieved April 7, 2020.
- Lee, Micah; Grauer, Yael (March 31, 2020). "Zoom Meetings Aren't End-to-End Encrypted, Despite Misleading Marketing". The Intercept. Archived from the original on April 2, 2020. Retrieved March 31, 2020.
Currently, it is not possible to enable E2E encryption for Zoom video meetings. (...) When we use the phrase ‘End to End’ in our other literature, it is in reference to the connection being encrypted from Zoom end point to Zoom end point.
- Stankiewicz, Kevin (April 17, 2020). "Ex-Facebook security chief, now Zoom advisor, says he still trusts Zoom for his video meetings". CNBC. Archived from the original on April 22, 2020. Retrieved May 8, 2020.
- Barrett, Brian (May 9, 2020). "Security News This Week: Zoom Security Gets a Boost With Keybase Acquisition". Wired. Archived from the original on May 17, 2020. Retrieved May 13, 2020.
- "Zoom acquires Keybase to get end-to-end encryption expertise". TechCrunch. Archived from the original on May 15, 2020. Retrieved May 7, 2020.
- Whitney, Lance (May 26, 2020). "How Zoom plans to better secure meetings with end-to-end encryption". Tech Republic. Archived from the original on May 27, 2020. Retrieved May 26, 2020.
- CVE-2020-11500
- Robertson, Adi (June 3, 2020). "Zoom says free users won't get end-to-end encryption so FBI and police can access calls". The Verge. Archived from the original on June 11, 2020. Retrieved June 5, 2020.
- "Zoom to exclude free calls from end-to-end encryption to allow FBI cooperation". the Guardian. June 4, 2020. Archived from the original on June 11, 2020. Retrieved June 5, 2020.
- Statt, Nick (June 17, 2020). "Zoom says free users will get end-to-end encryption after all". The Verge. Retrieved July 30, 2020.
- Whittaker, Zack (April 4, 2020). "Zoom admits some calls were routed through China by mistake". TechCrunch. Archived from the original on April 9, 2020. Retrieved April 5, 2020.
- "This New Zoom Control Allows You To Stop Chats Being Routed Through China".
- "Zoom adds Choose Your Own Routing Adventure to keep chats out of China".
- Allen-Ebrahimian, Bethany (June 10, 2020). "Zoom closed account of U.S.-based Chinese activist "to comply with local law"". Axios. Archived from the original on June 10, 2020. Retrieved June 11, 2020.
- Mozur, Paul (June 11, 2020). "Zoom Blocks Activist After Tiananmen Vigil". The New York Times. ISSN 0362-4331. Archived from the original on June 13, 2020. Retrieved June 11, 2020.
- Grant, Nico (June 12, 2020). "Zoom says China asked it to censor pro-democracy activists in US and it obeyed". ThePrint. Archived from the original on June 13, 2020. Retrieved June 13, 2020.
- Austin, Patrick (June 18, 2020). "'We'll Do All We Can to Promote Free Speech,' Says Zoom CEO Eric Yuan After Criticism on Encryption and Privacy". Time. Retrieved July 30, 2020.