You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
mermaid diagrams
About this tag
Mermaid diagrams, a text-to-diagram tool supported in Microsoft 365 Copilot, have been exploited in a security vulnerability known as Mermaid Exfiltration. Researchers demonstrated an indirect prompt-injection attack where an attacker could trick Copilot into fetching private tenant data, encoding it, and embedding it within a Mermaid diagram. When a user clicked the rendered diagram, the encoded data was sent to an attacker-controlled server. This attack chain highlights a novel data exfiltration vector using AI assistants and diagram rendering. Discussions on WindowsForum cover the technical details of the exploit, its implications for enterprise security, and the need for robust AI security measures.
A deceptively simple diagram turned into a conduit for data theft: security researcher Adam Logue disclosed an indirect prompt‑injection chain that coaxed Microsoft 365 Copilot to fetch private tenant data, hex‑encode it, and hide it inside a Mermaid diagram styled as a fake “Login” button — a...
Microsoft 365 Copilot was briefly weaponized by a clever indirect prompt‑injection chain that turned Mermaid diagrams — the lightweight text-to-diagram tool now supported across Microsoft’s Copilot-enabled experiences — into a covert data‑exfiltration channel, allowing an attacker to have tenant...