A new attack dubbed 'EchoLeak' is the first known zero-click AI vulnerability that enables attackers to exfiltrate sensitive data from Microsoft 365 Copilot from a user's context without interaction.
A new attack dubbed 'EchoLeak' is the first known zero-click AI vulnerability that enables attackers to exfiltrate sensitive data from Microsoft 365 Copilot from a user's context without interaction.
If you have a fediverse account, you can quote this note from your own instance. Search https://infosec.exchange/users/BleepingComputer/statuses/114665989547837421 on your instance and quote it. (Note that quoting is not supported in Mastodon.)