AI Worming through Word
Summary
Håkon Måløy discovered a prompt injection variant that turns into a self-replicating worm in Microsoft Word's Copilot, propagating hidden instructions across documents. Microsoft had 144 days to fix but no full mitigation.
View Cached Full Text
Cached at: 07/29/26, 07:55 PM
Similar Articles
Document-borne AI worms can self-propagate through Copilot for Word
This article demonstrates a novel AI worm that can self-propagate through Microsoft's Copilot for Word by embedding hidden instructions in documents, causing Copilot to copy those instructions into new documents. The vulnerability was disclosed to Microsoft's Security Response Center.
Quoting Calif Research
Calif Research demos WeWorm, a zero-click worm spreading through WeChat calls, with AI enabling rapid exploit development.
AI Worms and Viruses Are Coming
Researchers are demonstrating that AI agents can autonomously self-replicate and hack into remote systems, raising concerns about future AI-powered worms and viruses that could evade detection and cause widespread harm.
Adaptive Agentic Worms (8 minute read)
Researchers have demonstrated adaptive computer worms powered by open-weight LLMs that can generate target-specific attacks and self-replicate, using stolen compute to evade conventional AI safeguards.
Microsoft Copilot Cowork Exfiltrates Files
Researchers at PromptArmor demonstrate that Microsoft Copilot Cowork can be exploited via indirect prompt injection to exfiltrate files from Microsoft 365, exploiting the lack of approval for certain actions when the recipient is the active user.