Live data from Hacker News

‘War Dialing’ tool exposes Zoom’s password problems

krebsonsecurity.com

1–10 of 247 posts

Re: ‘War Dialing’ tool exposes Zoom’s password problems

#6

Hey look it's Mr "it's 2020 but I still don't give a shit about mobile users". Why would anyone want to alienate a substantial amount of users especially if they're serving ads on their blog?

> Hey look it's Mr "it's 2020 but I still don't give a shit about mobile users".

Nobody owes you their site behaving a certain way on your phone.

Re: ‘War Dialing’ tool exposes Zoom’s password problems

#7
post #5

Not a good idea to use 9 to 11 digit long IDs with no password requirement by default; they should have used at least 128-bit random ids, i.e. 21 character long base64-encoded strings.

How would that support phone dial-ins? (Yes, lots of people still dial into meetings all the time.)

Re: ‘War Dialing’ tool exposes Zoom’s password problems

#8
post #5

Not a good idea to use 9 to 11 digit long IDs with no password requirement by default; they should have used at least 128-bit random ids, i.e. 21 character long base64-encoded strings.

I enjoy being able to dial meeting IDs into my phone

Re: ‘War Dialing’ tool exposes Zoom’s password problems

#10
post #5

Not a good idea to use 9 to 11 digit long IDs with no password requirement by default; they should have used at least 128-bit random ids, i.e. 21 character long base64-encoded strings.

Yeah but then it sucks for people calling in to have to punch in a 21+ character long meeting ID
Post reply on HN