WebinarTV secretly records and turns meetings into podcasts
WebinarTV secretly joined, screen-recorded, and scraped private and public Zoom meetings using automated web bots and browser extensions, then used generative AI and synthetic voice models to convert the captured discussions into public, podcast-style audio episodes without the knowledge or consent of participants. What happened San Diego-based company WebinarTV Inc. accrued a directory claiming to host over 200,000 webinar recordings. Security researchers and journalists discovered that many of these entries were actually secret screen recordings of Zoom calls, ranging from non-profit medical support groups to corporate discussions. WebinarTV acquired access either by deploying automated bots to sign up via public "click-to-RSVP" links or by harvesting meeting links through third-party browser extensions. Once inside, the software silently screen-recorded the meetings without triggering Zoom’s built-in recording notification banner. The audio and transcripts were then processed through AI tools to auto-generate podcast episodes narrated by synthetic AI voice hosts, which were published on WebinarTV's public platform. Why it happened The incident was driven by aggressive web scraping and content aggregation strategies aimed at accumulating vast libraries of indexable media to capture search engine traffic and monetise advertising. The problem was enabled by: Over-privileged browser extensions: Tools that passively monitor user calendars and browser sessions to extract Zoom URLs and credentials. Screen-recording loopholes: Bypassing Zoom’s native host recording notifications by using client-side screen captures. Lack of transparency: WebinarTV operated without clear disclosures regarding how user data and meeting links were ingested or transformed into derivative commercial products. What it means For those directly affected - support-group members, nonprofit staff, students, and small business owners - the incicdenyt meant involuntary public exposure of health status, recovery journeys, trade secrets, and personal identity, with real emotional and reputational harm. For society , it undermines the basic assumption that a password-protected video call is actually private, and shows how AI content-generation tools can turn a privacy violation into a scalable, monetised product rather than a one-off leak. For policymakers, i t highlights that existing wiretap and consent laws, many written for phone calls, are being tested against AI-era scraping and content synthesis, and that browser extensions and meeting-metadata tools may need clearer obligations around exposing "private" links. It also illustrates a wider trend: similar concerns have surfaced with mainstream AI meeting-recording tools like Otter.ai, where a lawsuit alleged the product by default does not ask meeting attendees for permission to record and fails to alert participants that recordings are shared with the company. More recent reporting notes AI "stenographer" tools are increasingly used to record doctor visits, therapy sessions, and hangouts with friends without warning other participants, in a legal landscape where recording a conversation without the consent of all participants is illegal in 11 US states, including California, Florida, Illinois, and Pennsylvania.
- Date it happened
- 2025-01-01
- Organisation involved
- WebinarTV Inc.
- Product, system or model
- WebinarTV
This incident was imported from AIAAIC and is used under CC BY-SA 4.0. Our additions to it — the structured fields, the translation, the checks against other reports — are published under the same licence.
This is a record of what was reported, not a finding that anyone broke the law. If it names your organisation and you believe it is wrong, the corrections process is free and open to everyone.