<div dir="ltr">Bruce Schneier isn't exactly flattering them either:<br><br>

<a href="https://www.schneier.com/blog/archives/2020/04/security_and_pr_1.html">https://www.schneier.com/blog/archives/2020/04/security_and_pr_1.html</a>

<br><br>"That's what we know about Zoom's privacy and security so far. Expect more revelations in the weeks and months to come. The New York Attorney General is<span> </span><a href="https://www.nytimes.com/2020/03/30/technology/new-york-attorney-general-zoom-privacy.html" style="margin:0px;padding:0px;border:0px none;text-decoration:underline;outline:currentcolor none medium;color:black">investigating</a><span> </span>the company. Security researchers are combing through the software, looking for other things Zoom is doing and not telling anyone about. There are more stories waiting to be discovered.<p style="margin:0px 0px 1em;padding:0px;border:0px none;color:rgb(34,34,34);font-family:Helvetica,Arial,sans-serif;font-size:15px;font-style:normal;font-variant-ligatures:normal;font-variant-caps:normal;font-weight:400;letter-spacing:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;background-color:rgb(255,255,255);text-decoration-style:initial;text-decoration-color:initial">Zoom is a security and privacy<span> </span><a href="https://www.theguardian.com/technology/2020/apr/02/zoom-technology-security-coronavirus-video-conferencing" style="margin:0px;padding:0px;border:0px none;text-decoration:underline;outline:currentcolor none medium;color:black">disaster</a>, but until now had managed to avoid public accountability because it was relatively obscure. Now that it's in the spotlight, it's all coming out. (Their 4/1 response to all of this is<span> </span><a href="https://blog.zoom.us/wordpress/2020/04/01/a-message-to-our-users/" style="margin:0px;padding:0px;border:0px none;text-decoration:underline;outline:currentcolor none medium;color:black">here</a>.) On 4/2, the company<span> </span><a href="https://www.theguardian.com/technology/2020/apr/02/zoom-says-engineers-will-focus-on-security-and-safety-issues" style="margin:0px;padding:0px;border:0px none;text-decoration:underline;outline:currentcolor none medium;color:black">said</a><span> </span>it would freeze all feature development and focus on security and privacy. Let's see if that's anything more than a PR move.</p><p style="margin:0px 0px 1em;padding:0px;border:0px none;color:rgb(34,34,34);font-family:Helvetica,Arial,sans-serif;font-size:15px;font-style:normal;font-variant-ligatures:normal;font-variant-caps:normal;font-weight:400;letter-spacing:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;background-color:rgb(255,255,255);text-decoration-style:initial;text-decoration-color:initial">In the meantime, you should either lock Zoom down as best you can, or -- better yet -- abandon the platform altogether.<span> </span><a href="https://jitsi.org/" style="margin:0px;padding:0px;border:0px none;text-decoration:underline;outline:currentcolor none medium;color:black">Jitsi</a><span> </span>is a distributed, free, and open-source alternative. Start your meeting<span> </span><a href="https://meet.jit.si/" style="margin:0px;padding:0px;border:0px none;text-decoration:underline;outline:currentcolor none medium;color:black">here</a>."</p><p style="margin:0px 0px 1em;padding:0px;border:0px none;color:rgb(34,34,34);font-family:Helvetica,Arial,sans-serif;font-size:15px;font-style:normal;font-variant-ligatures:normal;font-variant-caps:normal;font-weight:400;letter-spacing:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;background-color:rgb(255,255,255);text-decoration-style:initial;text-decoration-color:initial">-Raoul<br></p>

</div><br><div class="gmail_quote"><div dir="ltr" class="gmail_attr">On Sun, 5 Apr 2020 at 21:07, Raoul Plommer <<a href="mailto:plommer@gmail.com">plommer@gmail.com</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><div dir="ltr"><div><a href="https://theintercept.com/2020/04/03/zooms-encryption-is-not-suited-for-secrets-and-has-surprising-links-to-china-researchers-discover/" target="_blank">https://theintercept.com/2020/04/03/zooms-encryption-is-not-suited-for-secrets-and-has-surprising-links-to-china-researchers-discover/</a><br><br>"
In addition to promptly fixing several security issues that were 
reported, the company removed an “attendee attention tracker” feature, a
 privacy nightmare which let meeting hosts track whether participants 
had the Zoom window — or some other app’s window — in focus during a 
meeting. It has also invested in new training materials to teach users 
about the security features like setting passwords on meetings to avoid <a href="https://www.fbi.gov/contact-us/field-offices/boston/news/press-releases/fbi-warns-of-teleconferencing-and-online-classroom-hijacking-during-covid-19-pandemic" target="_blank">Zoom-bombing</a>, the phenomenon where people disrupt unprotected Zoom meetings."<br><br></div><div>I'm glad they're fixing the faults but some of these seem like it's going to take quite a while. I'm no security expert, but some people that I know have been very concerned over these revelations during the past week. If there was no "bashing", they probably wouldn't have treated these issues as priority.<br></div><div><br></div><div>-Raoul<br></div></div><br><div class="gmail_quote"><div dir="ltr" class="gmail_attr">On Fri, 3 Apr 2020 at 11:48, Carlos Afonso <<a href="mailto:0000103799ed46a9-dmarc-request@listserv.syr.edu" target="_blank">0000103799ed46a9-dmarc-request@listserv.syr.edu</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><a href="https://www.theguardian.com/technology/2020/apr/02/zoom-technology-security-coronavirus-video-conferencing" rel="noreferrer" target="_blank">https://www.theguardian.com/technology/2020/apr/02/zoom-technology-security-coronavirus-video-conferencing</a><br>
<br>
frt rgds<br>
<br>
--c.a.<br>
<br>
=====================<br>
<br>
On 27/03/2020 18:53, Raoul Plommer wrote:<br>
> FYI:<br>
> <br>
> <a href="https://www.theguardian.com/technology/2020/mar/27/trolls-zoom-privacy-settings-covid-19-lockdown" rel="noreferrer" target="_blank">https://www.theguardian.com/technology/2020/mar/27/trolls-zoom-privacy-settings-covid-19-lockdown</a><br>
> <br>
<br>
-- <br>
<br>
Carlos A. Afonso<br>
[emails são pessoais exceto quando explicitamente indicado em contrário]<br>
[emails are personal unless explicitly indicated otherwise]<br>
<br>
Instituto Nupef - <a href="https://nupef.org.br" rel="noreferrer" target="_blank">https://nupef.org.br</a><br>
ISOC-BR - <a href="https://isoc.org.br" rel="noreferrer" target="_blank">https://isoc.org.br</a><br>
</blockquote></div>
</blockquote></div>