A single click mounted a covert, multistage attack against Copilot

A single click mounted a covert, multistage attack against Copilot

Microsoft has addressed a significant security flaw in its Copilot AI assistant, which permitted malicious actors to extract sensitive user information through a seemingly harmless URL click. This breach was uncovered by ethical hackers from the security firm Varonis, who successfully executed a multistage attack that revealed personal data such as user names, locations, and details from the Copilot chat history. The exploit was particularly alarming as it continued to operate even after the user closed the Copilot chat window, requiring no further interaction beyond the initial click on the link included in an email. This method of attack was able to bypass enterprise endpoint security measures, evading detection by various endpoint protection applications. Dolev Taler, a security researcher at Varonis, explained the mechanics of the attack, stating, "Once we deliver this link with this malicious prompt, the user just has to click on the link and the malicious task is immediately executed." He emphasized that even if the user closed the Copilot tab right after clicking the link, the exploit would still be effective. The harmful URL directed users to a Varonis-owned domain, with a series of complex instructions appended as a parameter. These parameters were utilized by Copilot and similar language models to process URLs directly within user prompts. When activated, the parameter led Copilot Personal to incorporate personal user details into web requests. The crafted prompt, disguised as a riddle, extracted sensitive information such as a user password and sent it to the Varonis-controlled server. The attack did not stop there; the disguised image file contained additional instructions aimed at gathering further details, including the user's name and location, which were also transmitted through URLs opened by Copilot.

Sources : Ars Technica

Published On : Jan 14, 2026, 22:05

AI
The Rise of AI Distillation: A Controversial Technique Sparks Debate in Tech and Government

In recent discussions, a once-obscure topic in artificial intelligence has surged to the forefront of debates among tech...

CNBC | Jul 25, 2026, 12:15
The Rise of AI Distillation: A Controversial Technique Sparks Debate in Tech and Government
Mobile
Unleashing the Power of AI: The 5 Smartphones Redefining Mobile Photography

Artificial Intelligence (AI) is transforming our daily experiences, permeating various aspects of technology, including ...

Business Today | Jul 26, 2026, 07:05
Unleashing the Power of AI: The 5 Smartphones Redefining Mobile Photography
Gadgets
OpenAI's Micro Keypad: A Novelty for Coders or Just a Confounding Gadget?

Last week, OpenAI made its debut in the hardware landscape with the launch of Micro, a stylish keypad designed to integr...

TechCrunch | Jul 25, 2026, 24:40
OpenAI's Micro Keypad: A Novelty for Coders or Just a Confounding Gadget?
Computing
Reclaiming Control: Librarians Host Workshops to Help People Navigate AI Tools

In a lively library setting in South Philadelphia, Charlie Bailey, a local librarian, humorously noted, "Everybody’s on ...

TechCrunch | Jul 25, 2026, 16:20
Reclaiming Control: Librarians Host Workshops to Help People Navigate AI Tools
Startups
The Future of Work: Executives Weigh In on AI's Impact on Gen Z Careers

As generative artificial intelligence continues to rise, uncertainty looms for the incoming Gen Z workforce. Leaders fro...

Business Insider | Jul 26, 2026, 10:15
The Future of Work: Executives Weigh In on AI's Impact on Gen Z Careers
View All News