13:00
2026-08-18
arstechnica.com
artificial-intelligence
Microsoft Copilot reveals secret input that allowed it to be hacked
Researchers at security firm Varonis exploited Microsoft 365 Copilot Enterprise by tricking the AI into revealing an undocumented parameter (?autorun=1) that bypassed user consent, allowing data exfil…