Huber כתב:
...
...
רק זה לבד היה גורם לי לשלול אותם כאופציה. כפי שאמרתי "הנכווה ברותחים..."

...
·אתה רוצה להיבהל גם מסיסקו ? בבקשה:
“A vulnerability in the Cisco WebEx browser extensions provided by Cisco WebEx Meetings Server and Cisco WebEx Meetings Center could allow an unauthenticated, remote attacker to execute arbitrary code on a targeted system.” - חולשה שהייתה פתוחה כמעט שנתיים...
"Cisco Systems has patched two high-severity vulnerabilities in its popular Webex video conferencing platform, which if exploited could allow an attacker to execute code on affected systems." - חולשה שתוקנה רק לפני כחודש וחצי
"A vulnerability in the multicast DNS (mDNS) protocol configuration of Cisco Webex Meetings Client for MacOS could allow an unauthenticated adjacent attacker to obtain sensitive information about the device on which the Webex client is running" - זה מתוך האתר של סיסקו עצמם
"A vulnerability in the loading mechanism of specific dynamic link libraries in Cisco Webex Teams for Windows and Cisco Webex Meetings Client for Windows could allow an authenticated, local attacker to perform a DLL hijacking attack." - עדכון אחרון לגבי זה נרשם בדצמבר 2019
ואם במיקרוסופט עסקנן:
https://www.tenable.com/security/research/tra-2019-54
היה אפשר לתקוף משתמשים, תוקן רק בדצמבר 2019
https://www.cbronline.com/news/microsof ... nerability
או בקיצור: Using the vulnerability any threat actor can trick the update function of the application into downloading any malicious code they wish using Microsoft’s own binary code.
שוב - אופן הצגת הנתונים מצד זום אינו תקין, מצד שני - חולשות יש לכולם.
מכיר הרבה ארגונים שלמרות האמור לגבי זום עברו אליו. למה ? כי זו פלטפורמה נוחה לשימוש שכמעט כל אחד משתמש בה. גם בתי הספר - ולהם יש רישוי 365 שכולל Teams.
אין לי ספק שזום ישפרו את האבטחה אצלם בצורה ניכרת, מקווה עבור מיקרוסופט וסיסקו שלא ישבו בשקט וינצלו את הזמן הזה לשפר את חווית המשתמש אצלם כדי שתהיה נוחה ונגישה כמו המתחרה החבוט זום.