Zoom Users Under Threat Once Again, Phishing Campaign Aims to Steal Zoom Credentials: Report

Zoom users are getting phishing emails, asking them to login with their credentials on fake websites.

Advertisement
By Vineet Washington | Updated: 22 April 2020 12:49 IST
Highlights
  • Zoom users may be under threat of phishing emails
  • These emails ask users for their credentials
  • Hackers are targeting Zoom users owing to the massive userbase

Zoom phishing emails seem to link users to a “spoof page”

Photo Credit: Proofpoint

Zoom is a rapidly growing video conferencing service that is being used by more than 200 million users. But the service has been in the news for all the wrong reasons, including security flaws and vulnerabilities. Now, another threat to Zoom users has been reportedly spotted. Hackers are using credential phishing emails to gain access to Zoom users' account details. According to a report, hackers are targeting individuals and businesses in the transportation, manufacturing, technology, business, and aerospace sectors in the US.

Owing to the ongoing coronavirus pandemic, offices, schools, and other organisations have switched to video conferencing as a means of communication. This has led to the massive increase in user base for services like Zoom.

In an analysis published by Proofpoint, it was found that credential phishing is being used to gain access to user account details. Phishing is the process of deceiving and luring users into sharing their account details.

Advertisement

The report states hackers are using emails to target multiple sectors in the US. The emails seems to come from an “admin account” like “Rouncube Admin” or "admin@servewebteam[.]gq" and contains the subject line “Zoom Account.” The body of this mail seems to welcome users to Zoom and gives them a link to activate their account. This link takes the user to a “generic webmail landing page” where they are asked to enter their credentials.

Advertisement

Phishing email comes with subject line "Zoom Account"
Photo Credit: Proofpoint

Advertisement

 

Another phishing email discovered by Proofpoint tries to lure Zoom users with a “missed meeting” message. The mail claims that the user has missed a Zoom meeting and gives a link through which the recipient can check their missed conference. Clicking on the link takes the user to a Zoom page that looks quite official but, Proofpoint claims it is a “spoofed Zoom page.” The user is asked to enter credentials here.

Advertisement

The mail can state user has missed a Zoom meeting
Photo Credit: Proofpoint

 

A smaller campaign targeting manufacturing, industrial, marketing/advertising, technology, IT and construction companies tries to infect users with ServLoader/NetSupport remote access Trojans. The mail thanks the recipient for responding to a fake RFQ (Request for Quotation) and offers to have a Zoom call. The subject line in these mails can be “[Company] Meeting cancelled - Could we do a Zoom call”, “[Company] - I won't make it to Arizona - Could we talk over Zoom?”, “The [Company] - I won't make it to Tennessee - Can we talk over Zoom?”, and other variations.

Phishing email aims to distribute the ServLoader/NetSupport remote access Trojans
Photo Credit: Proofpoint

 

It was also found that a large agricultural firm was sent an attachment that required it to “enable macros” after which a ServLoader PowerShell script is executed and that installs NetSupport, a remote-control application.

With most of the people using video conferencing as a means of communication during the ongoing coronavirus pandemic, the threats against their privacy and security seem to be increasing. However, it should be noted that this latest threat is not Zoom's fault in particular.

 

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: Zoom, Credential Phishing
Advertisement

Related Stories

Popular Mobile Brands
  1. Amazon Great Indian Festival 2025 Sale Will Begin on This Date
  2. Top OTT Releases of the Week (Sept 1 - Sept 7): Know What to Watch
  3. Flipkart Big Billion Days Sale Date Revealed, Will Compete With Amazon Sale
  4. Vivo X300 Pro Might Not Arrive With Faster Charging Support
  5. Samsung Galaxy S25 FE Launched With Exynos 2400 SoC: See Price
  6. Samsung Launches Galaxy Tab S11 Series With Galaxy AI, These Features
  7. Oppo Reno 14 FS 5G Launches in Select Global Markets With These Features
  8. WhatsApp Could Implement iOS 26's Liquid Glass Across its iPhone App
  9. Huawei Mate XTs Triple Folding Smartphone With Kirin 9020 Chipset Launched
  10. OpenAI Said to Launch Its First AI Chip in 2026 With Broadcom
  1. Hollow Knight: Silksong's Massive Launch Crashes Steam, PlayStation, Xbox and Nintendo Storefronts
  2. Amazon Great Indian Festival 2025: Deals on Samsung Galaxy S24 Ultra, iPhone 15, OnePlus 13s Teased Ahead of Sale
  3. Adobe Premiere App for iOS Introduced With Desktop-Like Controls, Generative AI Tools
  4. Motorola G06 to Reportedly Debut With MediaTek Helio G81 Extreme SoC; Check Expected Price, Features
  5. Samsung Galaxy S26 Series Leaked Dummy Images Hint at iPhone-Inspired Design
  6. OpenAI Said to Launch Its First AI Chip in 2026 With Broadcom
  7. Japan’s Financial Services Agency Mulls Crypto Regulation Under FIEA
  8. WhatsApp for iPhone Testing Implementation of Apple’s iOS 26 Liquid Glass in Beta App
  9. iPhone 17 Series Predicted to Outsell iPhone 16 Models With RAM Upgrades, Improved Cameras, and More
  10. ISRO Tests Parachutes for Gaganyaan Crew Module in Key Rocket-Sled Trial
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.