News

Microsoft 365 Copilot, the AI tool built into Microsoft Office workplace applications including Word, Excel, Outlook, ...
Microsoft has patched the critical 'EchoLeak' vulnerability in Microsoft 365 Copilot, a flaw that allowed attackers to ...
The M365 AI agent could be tricked into releasing sensitive information via email and without a mouse click. Microsoft has ...
A single email can silently trigger Copilot to exfiltrate sensitive corporate data — no clicks, no warnings, no user action.
Aim Security researchers found a zero-click vulnerability in Microsoft 365 Copilot that could have been exploited to have AI tools like RAG and AI agents hand over sensitive corporate data to ...
Researchers said the vulnerability, dubbed “EchoLeak,” could allow a hacker to access data without any specific user ...
Critical zero-click AI vulnerability EchoLeak exposed sensitive Microsoft 365 Copilot data; Microsoft patched it to prevent ...
Security researchers at Aim Security discovered "EchoLeak", the first known zero-click artificial intelligence (AI) ...
Researchers have discovered the very first Zero-Click weak point in a AI assistant. Microsoft 365 Copilot allowed attackers ...
Microsoft, a major investor since 2019, supports OpenAI through Azure and powers tools like Microsoft 365 Copilot with its ...
Critically, according to Aim’s researchers, all of this happens behind the scenes. Users themselves don’t have to open the ...