Zoom still doesn't secure conversations properly

If corporate companies are having so much difficulty making progress during this coronavirus pandemic, it is particularly due to questions ofsecurity: exchanging private data between employees must be possible without risk. To do this, employees then choose tools such as Whereby or Zoom, the latter often requiring the installation of an app on their computer, to communicate without leaving their home.

The problem is that thiswas pinnedjust last week for sharing personal information with…Facebook, another company well known for intensively monitoring its own members, especially since the famous Cambridge Analytica scandal a few months ago.

The problems are piling up

Thus, even though the course ofZoomon the NASDAQ has continued to grow since the start of the COVID-19 epidemic and the forced democratization of teleworking, now the firm's stock market share has plummeted due to a new affair. This time, it is the encryption chosen to protect the video calls of its software as well as the method of launching its native client for Mac which are in question.

In short, the application for macOS uses a method well known to malicious programs to bypass the defense systems put in place byAppleon their PCs in order to fight against unknown sources. This allows the publisher to force the installation of its app without the Internet user explicitly validating it via their manual agreement.

Furthermore, Zoom ensures on its official websiteencryptend-to-end exchanges: an important guarantee of security for B2B customers. However, after verification, it seems that this promise is very different from the true definition of this type of encoding. In reality, the company would haveaccess to our discussions. So be careful, and favor alternatives like Slack or Telegram, which also offer a much better UX.

Ever wondered how the@zoom_usmacOS installer does it’s job without you ever clicking install? Turns out they (ab)use preinstallation scripts, manually unpack the app using a bundled 7zip and install it to /Applications if the current user is in the admin group (no root needed).pic.twitter.com/qgQ1XdU11M

— Felix (@c1truz_)March 30, 2020

i-nfo.fr - Official iPhon.fr app

By : Keleops AG