“Reprompt” attack lets attackers steal data from Microsoft Copilot
ID: 8e77a2ed-3950-599c-a417-2425e1119178
STIX ID: report--8e77a2ed-3950-599c-a417-2425e1119178
Feed Name: Malwarebytes Blog
Threat Score
Reprompt is a prompt-injection vulnerability against Microsoft Copilot Personal where an attacker hides malicious instructions in the q URL parameter; Copilot auto-executes those prompts in an authenticated session, allowing actions and potential data exfiltration. Microsoft released a patch in January 2026 and no active exploitation was reported; mitigation includes installing the patch, using managed Copilot (with DLP/auditing), and avoiding unsolicited links.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
