---
title: "AI created a Zoom exploit in 20 prompts: how hackers took over devices without victims' knowledge"
description: "🚨 AI found a vulnerability in Zoom in just 20 prompts! Hackers could silently take over devices during calls. Zoom has already released patches — update urgently! #Zoom #CyberSecurity #AI"
date: 2026-08-13T14:28:02.000Z
lang: en
url: https://xab.info/en/posts/ai-created-zoom-exploit-20-prompts-hackers-took-over-devices
tags: [zoom, cybersecurity, ai-exploit, remote-work, vulnerability]
publisher: "XAB.info"
---

# AI created a Zoom exploit in 20 prompts: how hackers took over devices without victims' knowledge

![Man on video call via laptop — illustration for news about AI creating a Zoom exploit in 20 prompts](https://xab.info/media/2026/08/13/ii-nashel-sposob-nezametno-zakhvatyvat-chuzhie-ustroystva-iz-za-zoom/ii-nashel-sposob-nezametno-zakhvatyvat-chuzhie-ustroystva-iz-za-zoom-1.webp)

## 🎯 Key Points

- AI created a Zoom exploit in fewer than 20 prompts, a task that previously required 6 months of team work.
- The vulnerability allowed silent takeover of video call participants' devices across all OS.
- Zoom has released updates, but users must urgently update the application.
- The lowering of the barrier to entry into cybercrime due to AI is the main threat according to experts.

In early August 2026, cybersecurity faced a new challenge: artificial intelligence demonstrated the ability to find critical vulnerabilities in popular platforms within hours. Experts from A Security discovered that AI managed to develop a working exploit for Zoom, allowing silent takeover of participants' devices during video calls. The vulnerability affected all major operating systems — Windows, macOS, Linux, iOS, and Android.

### How AI found the vulnerability in Zoom

Specialists used fewer than 20 text prompts to have the AI identify gaps in the screen-sharing protocol and create an attack scenario. Previously, a similar task required a team of five highly qualified specialists and about six months of work. Now, AI handled it in less than 24 hours, demonstrating a radical lowering of the barrier to entry into cybercrime.

### Attack mechanism: silent device takeover

The vulnerability was located in the protocol responsible for real-time drawing and annotations during screen sharing. An attacker could use it to execute arbitrary code on the victim's device without their knowledge — without notifications and without any user action. This opened the path to full control over the gadget, including access to credentials and the ability to move laterally within a corporate network.

### Why this is dangerous for businesses and ordinary users

Users perceive Zoom as a trusted environment — especially in the corporate sector, where the platform is the standard for online meetings. However, it is precisely this confidence that makes them vulnerable. A hacker who joined a call with a company employee could gain access not only to their PC but also to the organization's internal network, potentially leading to data leaks or financial losses.

### Conflicting data

While most sources confirm the fact of the vulnerability and its fix, there are discrepancies in the details. For example, TechRepublic states that the exploit was created in "less than 24 hours," whereas Wired emphasizes that the AI required "less than 20 prompts" — which could mean several hours or even minutes depending on the generation speed. There is also no consensus on whether the vulnerability was already used in real attacks before its discovery — some sources suggest it might have been exploited "in the wild," while others believe it was found solely during research.

### Zoom's response and recommendations for users

Zoom developers reacted quickly to the threat: updates were released on both the server side and in client applications for all platforms. The company urged users to immediately update the app to the latest version. Experts also recommend enabling two-factor authentication, limiting screen-sharing access, and regularly checking security settings in Zoom.

This incident served as another reminder that in the age of AI, cyber threats are becoming faster, more accessible, and more dangerous. The democratization of hacking capabilities means that even inexperienced attackers can cause serious damage — and protection must be one step ahead.

## 🔍 Fact-Check Verification

- [Zoom Zero-Click RCE: AI Helped Build an Exploit in Under 24 Hours](https://www.techrepublic.com/article/news-zoom-zero-click-rce-zoomsday-ai-exploit/) - Подтверждает факт уязвимости, роль ИИ и временные рамки создания эксплойта.
- [A Zoom Screen-Sharing Bug Let Anyone Take Over Other Devices on a Call](https://www.wired.com/story/a-zoom-screen-sharing-bug-let-anyone-take-over-other-devices-on-a-call/) - Подробно описывает механизм атаки и отсутствие уведомлений для жертвы.
- [Zoom Screen-Sharing Bug Let People Fully Take Over Other Devices On A Call](https://www.msn.com/en-us/news/technology/zoom-screen-sharing-bug-let-people-fully-take-over-other-devices-on-a-call/ar-AA29S6Jh) - Подтверждает масштаб угрозы и реакцию Zoom.
- [This shocking Zoom bug allowed silent device takeovers on Android and iOS](https://www.androidauthority.com/zoom-call-device-takeover-bug-3697629/) - Акцент на мобильные платформы и незаметность атаки.

## ❓ FAQ

### Q: What happened with Zoom?
**A:** A vulnerability was discovered in the screen-sharing protocol, allowing silent takeover of participants' devices during a call.

### Q: How did AI help hackers?
**A:** AI found the vulnerability and created an exploit in less than 20 prompts — a task that previously required 6 months of team work.

### Q: Do I need to update Zoom?
**A:** Yes, urgently update the app to the latest version — patches have already been released for all platforms.

### Q: Was the vulnerability already used?
**A:** There is no confirmed data on real attacks, but experts fear it may have been exploited before discovery.