By "actively bypass the security" do you mean "it's a program that you need to install on your computer"?
Can you elaborate why Zoom is malware in ways that VS Code, VLC Media Player or Photoshop aren't?
EDIT: I mean the question honestly, as a question. I might have missed something. I mean, I saw yesterday's HN topic on a tweet that claims it sends info about all active programs to a server. But I saw nothing to substantiate that other than an "attention tracking" feature which is way less invasive than what's described in that tweet and off by default.
Did I miss the evidence, or some other damning privacy invading misfeature?