Microsoft Copilot Cowork Exfiltrates Files
Summary
A security vulnerability in Microsoft Copilot Cowork allows attackers to exfiltrate files by exploiting prompt injection that triggers external image requests, potentially leaking pre-authenticated download links.
View Cached Full Text
Cached at: 05/26/26, 06:46 PM
Similar Articles
Microsoft Copilot Cowork Exfiltrates Files
Researchers at PromptArmor demonstrate that Microsoft Copilot Cowork can be exploited via indirect prompt injection to exfiltrate files from Microsoft 365, exploiting the lack of approval for certain actions when the recipient is the active user.
Microsoft Copilot reveals secret input that allowed it to be hacked
Microsoft Copilot was found to have a secret URL parameter that enables prompt injection and data theft, posing security risks. Researchers also demonstrated a prompt injection attack that could poison Copilot's memory store.
Critical Copilot vulnerability allowed hackers to seal 2FA code from users
A critical vulnerability in Microsoft 365 Copilot, dubbed SearchLeak, allowed attackers to steal 2FA codes via parameter-to-prompt injection by exploiting raw HTML rendering before guardrail enforcement. Microsoft has fixed the vulnerability, but the underlying issue of prompt injection remains a challenge.
Document-borne AI worms can self-propagate through Copilot for Word
This article demonstrates a novel AI worm that can self-propagate through Microsoft's Copilot for Word by embedding hidden instructions in documents, causing Copilot to copy those instructions into new documents. The vulnerability was disclosed to Microsoft's Security Response Center.
Microsoft Copilot Cowork is Now Available - AI Moving From Chat to Real Work Execution
Microsoft launches Copilot Cowork, an AI assistant that moves beyond chat to execute real work across enterprise tools, understanding workflows and running tasks in the background.