
AI Tools
Microsoft Copilot Cowork Vulnerable to File Exfiltration Attack
Security researchers at PromptArmor have discovered that Microsoft Copilot Cowork is vulnerable to file exfiltration attacks through indirect prompt injection. The flaw exploits automatic approval for sending messages to the active user, allowing attackers to steal pre-authenticated download links to files in SharePoint and OneDrive.
May 255 minNeura News