• Skip to primary navigation
  • Skip to main content
  • Skip to footer
Logo of Agilient Security Consultants, Australia

Agilient Security Consultants Australia

The Best Security Consultants

Menu
  • Industries
      • Aviation and Airport Security Consultants Australia
      • Defence Industry Security Consulting
      • Government Security Consulting
      • Healthcare & Hospitals Security Consulting
      • Corrections and Detention
      • Maritime Security Consultant
      • Aged Care Facilities
      • Mining, Oil & Gas
      • Public Venues & Events
      • Rail
      • School and Education Security Consultant
      • Telecommunications Security Consultant
      • Utilities
      • Places of Faith and Worship
    • advice-colleagues-communication-newIndustries
  • Services
      • Cybersecurity Consultants
      • Protective Security
      • Business Resilience
      • Building Security Consultants
      • Security Audits
      • Cyber Audits
      • Data
      • Pandemic Planning
      • Azure
      • Electronic Security
      • IT Disaster Recovery Planning
      • Business Continuity Consultants
      • Identity Theft Consultant​
      • Security Consultants
      • Security Camera and CCTV Consultant
      • ISO
      • Duress Alarms
      • Cloud
      • AWS
      • Awareness Training
      • Penetration Testing
      • Security Risk Assessment Consultants
      • Managed Security Service Provider
      • Protection against Vehicles as a Weapon
    • training-1Services
  • Locations
    • Security Consultant Melbourne
    • Security Consultant Sydney
    • Security Consultant Brisbane
    • Security Consultant Adelaide
    • Security Consultant Canberra
    • Security Consultant Perth
  • Resources
    • menumanagers-dealing-customer-agreTraining
    • working-together-newJoin The Tribe
    • Webinars_3-1.jpgUpcoming and Past Events
    • hacking-detected-shutterstock_newResources
  • Articles
  • About
    • About Us
      We are an Australian owned and operated security company specialising in risk, cybersecurity, protective security, crisis and business continuity management services.
    • frequently-asked-questions-smallFAQ’s
    • bg-menu-government-institutionsConsultant Registration
  • Contact Us
Contact Us

Zoom Responds to Cybersecurity Complaints

You are here: Home / General / Zoom Responds to Cybersecurity Complaints

The number of people using Zoom has skyrocketed since the COVID-19 pandemic-related shift to remote working.  Despite being designed primarily for business communications, Zoom is now also used for virtual education, telehealth and online social gatherings.

The significant increase in the use of Zoom’s video conferencing software has also exposed the magnitude of its security vulnerabilities. Recently, Zoom’s data privacy and security practices have attracted significant media attention and scrutiny from the office of the New York Attorney General, other state regulators and the FBI.

Amid security and confidentiality concerns, organisations such as SpaceX, NASA and the Australian Defence Force have ceased using Zoom.

Zoom has responded by:

  • Initiating a comprehensive review with external experts and users to understand all security and privacy concerns, and release a transparency report that provides information related to law enforcement requests for data, records or content;
  • Implementing a “CISO council” to address security and privacy issues, increase penetration testing, and conduct a weekly webinar to provide privacy and security updates to users;
  • Directing engineering resources to exclusively focus on security and privacy issues for the next three months;
  • Apologising for falsely claiming that Zoom meetings and chats were end-to-end encrypted;
  • Releasing fixes for Mac issues to mitigate the risk of hackers taking over Zoom webcams;
  • Releasing an update that prevents all posted links, including normal URLs and UNC paths, from being converted into clickable hyperlinks. The Windows problem could have potentially caused password leakage;
  • In response to the FBI’s warning and user advice to adjust their settings to prevent ZoomBombing (where trolls exploit Zoom’s screen-sharing feature to share disturbing and/or offensive content), Zoom enabled the Waiting Room feature. This allows the host to control when participants join the meeting. In addition, it is advisable to require users to enter a password before they access the Waiting Room. The host will transition all authorised users from the Waiting Room to the meeting when all intended participants have been granted access;
  • Tightening its privacy policy which now states that it doesn’t use data from meetings for any advertising. Zoom’s privacy policy was criticised for allowing the collection of extensive data about its users ( e.g. videos, transcripts and shared notes) and sharing it with third parties;
  • Removing the iOS app feature that enabled sending analytics data to Facebook, even when the user did not have a linked Facebook account; and
  • Recently releasing a patch to address a Windows app flaw that allowed bad actors to gain root privileges and steal victims’ login credentials, and a patch to a flaw that allowed access to the mic and camera on macOS, which in turn enabled a way to record Zoom meetings.

Agilient urges all Zoom users to maintain effective security by ensuring their Zoom software is frequently updated.

Our expert security consultants are available to ensure that your organisation is appropriately protected from cyber threats. Contact us today to find out how we can assist you.

Author: Phillipa Lee

Tweet
Share

General

Looking for a security partner? Get in touch with Agilient.

Looking for practical and cost-effective security and risk solutions for your government department, agency or company? Speak with Australia’s leading senior security, risk and resilience experts.


Looking for a pandemic planning partner? Get in touch with Agilient.

Looking for practical and cost-effective risk management solutions for your government department, agency or company? Speak with Australia’s leading senior risk and emergency management experts.



Footer

Agilient is a proud member of

Ai Group Defence Council
Australian Industry & Defence Network
Australian Security Industry Association
Sydney Aerospace & Defence Interest Group

Company and Licensing Details:

ABN: 37 157 911 441
NSW Security Master Licence # 410783087
ACT Security Master Licence # 17502184
Vic Security Registration # 878-460-40S
Qld Security Firm Licence # 3834422

Join The Tribe

Sign up to receive our regular Agilient newsletter including the latest security, risk and resilience updates

Sign up now

Copyright © 2025 Agilient – Level 14, 275 Alfred St, North Sydney NSW 2060 Australia – 1300 341 692

Our Services

Security Consultant

Security Consultant Sydney

Security Consultant Melbourne

Security Consultant Canberra
Security Consultant Perth

Security Consultant Adelaide

Security Consultant Brisbane