Claiming Zoom Rooms Service Accounts to Gain Access to Tenants
Claiming Zoom Rooms Service Accounts to Gain Access to Tenants
30 November 2023
The finding highlights the potential misuse of service accounts to gain unauthorized access to SaaS systems. Abusing the bug enabled attackers to predict service account email addresses, hijack the accounts, and collect sensitive information.