News
Security researchers uncovered “EchoLeak,” a zero-click flaw in Microsoft 365 Copilot, exposing sensitive data without user action. Microsoft has mitigated the vulnerability.
The researchers at Aim Security dubbed the flaw “EchoLeak.” Microsoft told Fortune that it has already fixed the issue in Microsoft 365 Copilot and that its customers were unaffected.
Microsoft 365 Copilot, the AI tool built into Microsoft Office workplace applications including Word, Excel, Outlook, PowerPoint, and Teams, harbored a critical security flaw that, according to ...
Security flaws in Microsoft’s AI systems have landed it in the spotlight before. In June last year one of its newly announced and admittedly impressive Copilot AI systems, Recall, was found to ...
Microsoft 365 Copilot is an AI assistant built into Office apps like Word, Excel, Outlook, and Teams that uses OpenAI's GPT models and Microsoft Graph to help users generate content, analyze data ...
Hosted on MSN26d
Exclusive: New Microsoft Copilot flaw signals broader risk of AI agents being hacked—‘I would be terrified’Microsoft 365 Copilot, the AI tool built into Microsoft Office workplace applications including Word, Excel, Outlook, PowerPoint, and Teams, harbored a critical security flaw that, according to ...
Microsoft has fixed a dangerous zero-click attack in its Generative Artificial Intelligence (GenAI) model which could have allowed threat actors to silently exfiltrate sensitive corporate data without ...
4don MSN
The Anthropic Model Context Protocol (MCP) Inspector project carried a critical-severity vulnerability which could have ...
AI Security microsoft copilot Microsoft fixes first known zero-click attack on an AI agent The "EchoLeak" security flaw affected Microsoft 365 Copilot By Kishalaya Kundu June 12, 2025 at 12:48 PM ...
The vulnerability, called “EchoLeak,” lets attackers “automatically exfiltrate sensitive and proprietary information” from Microsoft 365 Copilot without knowledge of the user, according to findings ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results