logo

From Copilot to Copirate: How data thieves could hijack Microsoft's chatbot

ID: 28dc81a2-0b37-5332-a79e-38ab1c8b5194

STIX ID: report--28dc81a2-0b37-5332-a79e-38ab1c8b5194

Feed Name: The Register (Security)

Threat Score
60/100

Date Published: 2024-08-28

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

Microsoft patched a multi-stage Copilot exploit disclosed by researcher Johann Rehberger that combined prompt injection, automatic tool invocation, and ASCII smuggling to stealthily exfiltrate email contents and MFA codes; Rehberger published a proof-of-concept and Microsoft says mitigations were applied though details were not shared. The report warns enterprises building on Copilot/LLMs to address LLM-specific attack techniques and notes additional research and tooling demonstrating related risks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.