logo

How ‘Reprompt’ Attack Let Hackers Steal Data From Microsoft Copilot

ID: 1e1bd345-ebf7-5b4f-84d1-81e534a8e540

STIX ID: report--1e1bd345-ebf7-5b4f-84d1-81e534a8e540

Feed Name: TechRepublic Security

Threat Score
65/100

Date Published: 2026-01-19

Date Updated: 2026-04-23

Author: Aminu Abdullahi

...
...

Varonis Threat Labs disclosed a novel attack named “Reprompt” that abused Copilot Personal’s ability to accept prefilled prompts via a URL parameter, combined with a double-request bypass and chained server-driven requests, to maintain session control and stealthily exfiltrate sensitive data; Microsoft has patched the flaw in January 2026 and enterprise Microsoft 365 Copilot was not impacted.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.