logo

“Reprompt” attack lets attackers steal data from Microsoft Copilot

ID: 8e77a2ed-3950-599c-a417-2425e1119178

STIX ID: report--8e77a2ed-3950-599c-a417-2425e1119178

Feed Name: Malwarebytes Blog

Threat Score
55/100

Date Published: 2026-01-15

Date Updated: 2026-04-28

...
...

Reprompt is a prompt-injection vulnerability against Microsoft Copilot Personal where an attacker hides malicious instructions in the q URL parameter; Copilot auto-executes those prompts in an authenticated session, allowing actions and potential data exfiltration. Microsoft released a patch in January 2026 and no active exploitation was reported; mitigation includes installing the patch, using managed Copilot (with DLP/auditing), and avoiding unsolicited links.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.