sb-au logo
Story image

Zoom to begin rolling out end-to-end encryption

Zoom has begun a ‘technical preview’ of its end-to-end encryption (E2EE) offering, available for both free and paid users, the company revealed in a post on its blog today.

Available starting from next week, it represents the first phase out of four of the company’s greater E2EE offering, which was announced in May following backlash that the company was lax on its security and privacy.

The new encryption will provide ‘robust protections’ to help prevent the interception of decryption keys that could be used to monitor meeting content, Zoom head of security engineering Max Krohn wrote in the blog post.

The new E2EE uses the same GCM encryption used currently, but shifts the location of those encryption keys; when a host creates a meeting, encryption keys are automatically generated, which then use public key cryptography to distribute the keys to the other participants.

Krohn says Zoom’s servers become ‘oblivious servers’, with no visibility of the keys required to decrypt the meeting because the keys are generated by participant’s machines rather than Zoom’s servers.

Zoom CEO Eric Yuan says the move is the next step in fortifying the security of its video communication service.

“End-to-end encryption is another stride toward making Zoom the most secure communications platform in the world,” says Yuan. 

“This phase of our E2EE offering provides the same security as existing end-to-end-encrypted messaging platforms, but with the video quality and scale that has made Zoom the communications solution of choice for hundreds of millions of people and the world’s largest enterprises.”

As part of the new service, hosts can enable the setting for E2EE at the account, group, and user level and can be locked at the account or group level. For it to function correctly in Phase 1, all meeting participants must join from the Zoom desktop client, mobile app, or Zoom Rooms, according to the blog post.

During the first phase, however, several services will be disabled if E2EE is enabled, including cloud recording, streaming, live transcription, Breakout Rooms, polling, 1:1 private chat and meeting reactions.

The news follows Zoom’s announcement last month of its Q2 2021 financial results, in which it saw a vast increase its profit, cash flow and GAAP income - culminating in a massive 355% year-on-year increase in revenue.

Yuan says the world’s shift towards remote solutions and amidst business continuity concerns at the beginning of the year has greatly affected the company’s standing.

“Organisations are shifting from addressing their immediate business continuity needs to support a future of working anywhere, learning anywhere, and connecting anywhere on Zoom’s video-first platform,” says Yuan.

At Zoom, we strive to deliver a world-class, frictionless, and secure communication experience for our customers across locations, devices, and use cases.”

Story image
On October 28, go from CX starter to champion with Zendesk
There could not be a better way to get at the heart of this topic than hearing from the experts whose mission it is to make sure customer service is the best of the best.More
Story image
Report reveals relationship between boardroom and cybersecurity investments
“While boards are definitely listening and stepping up with increased budget for cybersecurity, they tend to view any investment as a cost rather than adding business value."More
Story image
Why IT and HR must work together to help businesses weather the storm
Employers are striving to balance team productivity, security and employee engagement. If remote work is the new norm, it’s impossible to ignore the challenging nature of the situation, writes Gigamon manager for A/NZ George Tsoukas.More
Story image
Insider threat report reveals deception in the workforce
Insider threats come from people inside an enterprise, whether they divulge proprietary information with nefarious intentions, or are just careless employees that unwittingly share sensitive data, writes Bitglass product marketing manager Juan Lugo.More
Link image
Save the date: 28 October is the day your CX will be supercharged
Learn from the experts at Zendesk and ESG to find out how you can supercharge your customer experience approach in this exclusive online event! Register now.More
Download image
Enterprise leaders discuss what makes up networking infrastructure
NFV is fast becoming the go-to method of simplifying corporate networks from planning, through deployment and management.More