Latest Tech News

Stay updated with the latest in technology, AI, cybersecurity, and more

Filtered by: jitsi Clear Filter

Jitsi privacy flaw enables one-click stealth audio and video capture

Jitsi is an open-source web conferencing application. Jitsi also hosts a public instance, with millions of monthly active users. Attack scenario Let’s walk through an example. An attacker runs a meeting called `MiniGinger` on the public Jitsi instance meet.jit.si. When a user visits the attacker controller webpage `CuteCats.com`, in the background they are redirected to: https://meet.jit.si/MiniGinger#config.prejoinConfig.enabled=false If the user visited any other Jitsi meeting before and