Insecure video conferencing

B2B Cyber ​​Security ShortNews

Share post

Online meetings offer cybercriminals a good opportunity to cause enormous damage to companies. The cases of industrial espionage via video conference, hacking or data theft are increasing.

Video conferencing is part of everyday life in many companies. However, companies often forget that online meetings also harbor risks, especially if they do not consider security measures. Even without much effort, companies can find out whether they are exposed to an increased risk of cyber attacks during their video conferences.

Lack of access control

Companies often send login links to their employees to give them access to online meetings. Login links may provide a convenient way of access, but they also make it easier for cybercriminals to join video conferences. The danger is not so much that login links can be easily copied and distributed as that organizers of online meetings often do not consider it important to verify the identity of the people who click on the link. In this way, cyber attackers can gain access to video conferences and then cause damage.

Another typical sign of insecure video conferences is the lack of end-to-end encryption of the communication. This means: The communication is not encrypted from client to client and is therefore decrypted when it passes through the servers. This vulnerability is welcome for cyber criminals as they can easily access both the content of the communication and the files exchanged.

Non-European clouds

Many video conferencing platforms offer their services via US clouds, which are subject to the US Cloud Act. According to this, providers can be obliged to provide communications from certain customers. Thus, the confidentiality of the communication is not guaranteed. It is therefore advisable to hold video conferences via platforms that use European cloud. European providers such as Tixeo are GDPR-compliant and do not transmit any personal user data to a third country or to another institution.

Do you have a moment?

Take a few minutes for our 2023 user survey and help make B2B-CYBER-SECURITY.de better!

You only have to answer 10 questions and you have an immediate chance to win prizes from Kaspersky, ESET and Bitdefender.

Here you go directly to the survey
 

Protecting your own online meetings from cyber attacks is easier than you think. However, companies are well advised to start making their video conferences robust against unauthorized access as early as possible. Comprehensive research into suitable video conferencing providers and careful implementation of measures are essential for well-protected online meetings. Secure corporate communication is only possible if companies are actively ahead of cyber attackers.

More at Tixeo.com

 


About Tixeo

Tixeo is the leading European company for secure video collaboration. Tixeo is the only video conferencing technology certified by ANSSI (French National Agency for Computer and Network Security) according to CSPN for its end-to-end encryption. This certification is recognized by the Federal Office for Information Security (BSI). Tixeo has been tested by numerous government agencies and certified with the label "Cybersecurity Made in Europe" and many others. This level of independent verification is unique and makes Tixeo the most secure virtual meeting software in the world. Tixeo's headquarters are in Montpellier, with branches in Germany and Spain.


 

Matching articles on the topic

Report: 40 percent more phishing worldwide

The current spam and phishing report from Kaspersky for 2023 speaks for itself: users in Germany are after ➡ Read more

BSI sets minimum standards for web browsers

The BSI has revised the minimum standard for web browsers for administration and published version 3.0. You can remember that ➡ Read more

Stealth malware targets European companies

Hackers are attacking many companies across Europe with stealth malware. ESET researchers have reported a dramatic increase in so-called AceCryptor attacks via ➡ Read more

IT security: Basis for LockBit 4.0 defused

Trend Micro, working with the UK's National Crime Agency (NCA), analyzed the unpublished version that was in development ➡ Read more

MDR and XDR via Google Workspace

Whether in a cafe, airport terminal or home office – employees work in many places. However, this development also brings challenges ➡ Read more

Test: Security software for endpoints and individual PCs

The latest test results from the AV-TEST laboratory show very good performance of 16 established protection solutions for Windows ➡ Read more

FBI: Internet Crime Report counts $12,5 billion in damage 

The FBI's Internet Crime Complaint Center (IC3) has released its 2023 Internet Crime Report, which includes information from over 880.000 ➡ Read more

HeadCrab 2.0 discovered

The HeadCrab campaign against Redis servers, which has been active since 2021, continues to successfully infect targets with the new version. The criminals' mini-blog ➡ Read more