How ‘Reprompt’ Attack Let Hackers Steal Data From Microsoft Copilot
ID: 1e1bd345-ebf7-5b4f-84d1-81e534a8e540
STIX ID: report--1e1bd345-ebf7-5b4f-84d1-81e534a8e540
Feed Name: TechRepublic Security
Threat Score
Varonis Threat Labs disclosed a novel attack named “Reprompt” that abused Copilot Personal’s ability to accept prefilled prompts via a URL parameter, combined with a double-request bypass and chained server-driven requests, to maintain session control and stealthily exfiltrate sensitive data; Microsoft has patched the flaw in January 2026 and enterprise Microsoft 365 Copilot was not impacted.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
