An AI worm vulnerability exploits Copilot as a distribution mechanism and bypasses traditional enterprise safeguards like DLP and email security because the document becomes malicious only when processed by Copilot.
A self-replicating worm exploits Microsoft Copilot to spread through Office documents while bypassing standard security controls such as DLP and email filtering, with the underlying vulnerability still unpatched.
Facilitator analyzes Teams meetings in real-time and automatically answers open questions via web search in the chat without interrupting the conversation – but requires Copilot Premium and can be disabled at administrator level.
A single click on a manipulated Microsoft link was sufficient to exfiltrate sensitive data such as one-time passwords and corporate files through parameter-to-prompt injection.
Three chained bugs in Microsoft 365 Copilot allowed attackers to exfiltrate corporate data via a legitimate microsoft.com link, as traditional anti-phishing filters did not block legitimate sources.