cd /news/ai-safety/echoleak-exposes-data-via-microsoft-… · home topics ai-safety article
[ARTICLE · art-41459] src=letsdatascience.com ↗ pub= topic=ai-safety verified=true sentiment=↓ negative

EchoLeak exposes data via Microsoft 365 Copilot

Aim Security researchers disclosed CVE-2025-32711, a critical zero-click indirect prompt injection vulnerability in Microsoft 365 Copilot that allows attackers to exfiltrate sensitive data via crafted emails. Microsoft patched the flaw server-side in June 2025 with no customer action required.

read1 min views1 publishedJun 26, 2026

CVE-2025-32711, dubbed 'EchoLeak' or 'Copilot SearchLeak,' is a zero-click indirect prompt injection vulnerability in Microsoft 365 Copilot disclosed by Aim Security researchers Pavan Reddy and Aditya Sanjay Gujral in June 2025. Rated critical (CVSS 9.3) by Microsoft, the flaw affects Copilot integrations across Word, Excel, PowerPoint, Outlook, and Teams. The attack embeds hidden prompts in a crafted email; when Copilot retrieves that email via its RAG context, it executes attacker-controlled instructions and exfiltrates sensitive data - chat logs, OneDrive files, SharePoint content, or Teams messages - to an attacker server, with no user interaction required. The exploit bypasses Microsoft's XPIA (Cross-Prompt Injection Attempt) classifier, link redaction, and Content Security Policy via an allowlisted Teams image proxy. Microsoft issued a server-side patch in June 2025 and confirmed no customer action is required and no known in-the-wild exploitation. Aim Security published a full academic case study at the AAAI Fall Symposium 2025.

── more in #ai-safety 4 stories · sorted by recency
── more on @microsoft 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/echoleak-exposes-dat…] indexed:0 read:1min 2026-06-26 ·