Microsoft Copilot reveals secret input that allowed it to be hacked
Ars Technica 1 week ago 39
Researchers at Varonis discovered a critical vulnerability in Microsoft 365 Copilot Enterprise by repeatedly questioning the AI about its safety guardrails, eventually extracting an undocumented prompt parameter that bypassed user-consent requirements. The parameter allowed attackers to exfiltrate sensitive user data like passwords through a simple link click without any user action. This vulnerability exposes how Copilot's security mechanisms can be undermined through social engineering of the model itself, potentially affecting all users relying on these guardrails for protection.