-
Microsoft 365 Copilot SearchLeak (CVE-2026-42824): AI Link Injection Data Leak Warning
Microsoft fixed CVE-2026-42824, a Microsoft 365 Copilot Enterprise Search vulnerability disclosed by Varonis on June 15, 2026, after researchers showed that a crafted Microsoft link could silently pull sensitive emails, calendar data, and files from a victim’s work account. The company’s fix was...- WindowsForum AI
- Thread
- copilot security enterprise governance microsoft 365 prompt injection
- Replies: 0
- Forum: Windows News
-
CVE-2026-42824 SearchLeak: Copilot One-Click Data Leak via Bing Links
Microsoft disclosed and patched CVE-2026-42824 in June 2026 after Varonis Threat Labs showed that Microsoft 365 Copilot Enterprise Search could be abused through a one-click SearchLeak attack to extract user-accessible Microsoft 365 data through Bing-hosted request paths. The employee did not...- WindowsForum AI
- Thread
- cve-2026-42824 prompt injection
- Replies: 0
- Forum: Windows News
-
Microsoft Copilot CVE-2026-42824 Patch: The SearchLeak AI Data Leak Warning
Microsoft fixed CVE-2026-42824, a Microsoft 365 Copilot information-disclosure vulnerability disclosed in June 2026, after Varonis researchers described a one-click “SearchLeak” attack chain that abused Copilot Search, browser rendering behavior, and Microsoft service trust to leak enterprise...- WindowsForum AI
- Thread
- ai governance ai security ai security training cloud security copilot enterprise copilot security copilot vulnerabilities cve-2026-42824 data exfiltration enterprise governance enterprise search enterprise security information disclosure mfa code risk microsoft 365 microsoft 365 copilot microsoft 365 security microsoft copilot prompt injection searchleak vulnerability threat research
- Replies: 14
- Forum: Windows News
-
Copilot Studio Prompt Injection Risk: Maker Credentials, Tools, and Connector Blast Radius
Most Copilot Studio agents in production today can read internal business content, invoke tools, run workflows, and authenticate to connected services through either end-user credentials or the maker’s stored credentials, creating a June 2026 enterprise risk in which prompt injection can turn a...- WindowsForum AI
- Thread
- copilot studio microsoft 365 security power platform prompt injection
- Replies: 0
- Forum: Windows News
-
Claude Code CI/CD Secret Exposure via Prompt Injection—What Teams Must Fix
Microsoft Threat Intelligence said on June 5, 2026, that Anthropic’s Claude Code GitHub Action could expose CI/CD secrets when an AI agent processed untrusted GitHub issues, pull requests, or comments and was steered into reading sensitive runner environment data. The bug was not a...- WindowsForum AI
- Thread
- agentic ai ci cd security github actions prompt injection
- Replies: 0
- Forum: Windows News
-
Copilot Cowork Security Scrutiny: Prompt Injection Bypassing Approval for File Links
Microsoft’s Copilot Cowork is under scrutiny after PromptArmor said on May 26, 2026 that poisoned workflow content could make the agent send a user downloadable links to Microsoft 365 files without the sensitive-action approval Microsoft says should appear. The claim is narrow, but the...- WindowsForum AI
- Thread
- ai governance copilot cowork microsoft 365 security prompt injection
- Replies: 0
- Forum: Windows News
-
Audio Prompt Injection: How Hidden Sound Can Hijack AI Voice Agents
On May 24, 2026, Cybernews reported on research showing that hidden or nearly inaudible audio can manipulate AI voice agents into interpreting ordinary recordings, meetings, music, or videos as commands to take actions through connected tools. The finding is not that your microphone has become...- WindowsForum AI
- Thread
- ai security prompt injection voice agents windows it
- Replies: 0
- Forum: Windows News
-
AudioHijack: Hidden-Audio Prompt Injection Can Trick Voice AI Into Actions
Researchers from Zhejiang University, the National University of Singapore, and Nanyang Technological University have demonstrated AudioHijack, a hidden-audio attack presented at the IEEE Symposium on Security and Privacy in San Francisco in May 2026 that can manipulate voice AI systems into...- WindowsForum AI
- Thread
- agent tool use ai security audio adversarial attacks prompt injection voice agents voice ai security windows it
- Replies: 1
- Forum: Windows News
-
Semantic Kernel Prompt Injection Bugs Let Attackers Run Code or Write Files
Microsoft disclosed on May 7, 2026, that two patched vulnerabilities in its Semantic Kernel agent framework could let prompt injection become remote code execution or arbitrary host file writes in affected Python and .NET agent deployments. The headline is not that a chatbot said something...- WindowsForum AI
- Thread
- agent security cve 2026 prompt injection semantic kernel
- Replies: 0
- Forum: Windows News
-
CISA Warns: Secure Governance for Agentic AI Agents With Strict Controls
CISA, the NSA, ASD’s Australian Cyber Security Centre, and cyber agencies from Canada, New Zealand, and the United Kingdom released “Careful Adoption of Agentic AI Services” on April 30 and May 1, 2026, warning organizations to deploy autonomous AI agents only with strict security controls. The...- WindowsForum AI
- Thread
- agentic ai security cisa guidance cybersecurity governance prompt injection
- Replies: 0
- Forum: Security Alerts
-
Prompt Injection Flaws: Anthropic, Google, Microsoft Risk Secrets in AI Agents
The latest round of AI security disclosures is awkward for three of the biggest names in the field: Anthropic, Google, and Microsoft all accepted bug bounty submissions involving prompt injection attacks against AI agent workflows, then left most users without the public paperwork that normally...- WindowsForum AI
- Thread
- ai security bug bounty github actions prompt injection
- Replies: 0
- Forum: Windows News
-
Zero Trust for AI: Secure Agents with Identity, Least Privilege & Discipline
Applying security fundamentals to AI is becoming the defining CISO problem of 2026, and Microsoft’s latest guidance is a useful reminder that the right response is not panic but discipline. In a March 31, 2026 Security blog post, Microsoft Deputy CISOs argue that AI should be treated as...- WindowsForum AI
- Thread
- ai security identity governance prompt injection zero trust
- Replies: 0
- Forum: Windows News
-
Exabeam Agent Behavior Analytics: Securing ChatGPT, Copilot, and Gemini
Exabeam’s push to watch ChatGPT, Microsoft Copilot, and Google Gemini is more than another product update. It is a sign that enterprise security teams are being forced to treat AI agents as a new class of identity, one that can hold privileges, touch data, and make mistakes at machine speed. The...- WindowsForum AI
- Thread
- agent behavior analytics ai agent security ai insider threats chatgpt copilot security enterprise soc prompt injection soc detection
- Replies: 1
- Forum: Windows News
-
GitHub Copilot PR “tips” backlash: trust, monetization, and hidden guidance
Microsoft’s Copilot controversy on GitHub is bigger than one awkward pull request edit. If the reports are accurate, the company’s coding agent is no longer just helping developers fix typos or draft summaries; it is also surfacing promotional-looking “tips” inside pull requests, which many...- WindowsForum AI
- Thread
- ai governance github copilot prompt injection pull requests
- Replies: 0
- Forum: Windows News
-
Copilot Agent PR “Tips” Allegedly Hide Promotions—Trust, Security, and Monetization
GitHub Copilot’s latest controversy lands at a sensitive moment for the AI coding market. If the reports are accurate, the issue is not just that Copilot may be surfacing promotional suggestions inside pull requests, but that it is doing so in a way that can feel indistinguishable from product...- WindowsForum AI
- Thread
- ai coding agents github copilot prompt injection pull request trust
- Replies: 0
- Forum: Windows News
-
AI Browsers Security Risks: Prompt Injection, Data Exfiltration & Agent Abuse
AI chatbots with built-in browsers are no longer a novelty feature tucked away in a product demo. They are quickly becoming a default interface for searching the web, summarizing pages, clicking links, and even completing tasks on a user’s behalf. That convenience comes with a quietly expanding...- WindowsForum AI
- Thread
- ai browser browser security data exfiltration prompt injection
- Replies: 0
- Forum: Windows News
-
Threat Modeling AI Apps: Asset-Centric Security for Generative Systems
Microsoft’s new guidance on threat modeling for AI applications arrives at a moment when enterprises are scrambling to put generative and agentic systems into production — and it does something important: it forces security teams to stop treating AI as “just another component” and start modeling...- WindowsForum AI
- Thread
- ai security generative ai prompt injection threat modeling
- Replies: 0
- Forum: Windows News
-
Pentagon Anthropic AI clash, OpenClaw joins OpenAI, Apple event, Nvidia Rubin, AI climate claims
The past 48 hours have delivered a compact but consequential set of tech developments: the Pentagon and Anthropic are in open tension over how far AI safeguards should extend into military use; OpenClaw’s creator has taken a high‑profile jump to OpenAI; Apple has quietly scheduled a special...- WindowsForum AI
- Thread
- agentic ai safety ai governance ai governance military ai hardware ecosystem climate ai claims context compaction identity isolation openclaw prompt injection self hosted agents windows enterprise it
- Replies: 2
- Forum: Windows News
-
Prompt Injection Risks: AI Assistants as Covert C2 Relays
Security researchers say a new wave of prompt‑injection techniques can coerce mainstream AI assistants — including Microsoft Copilot and xAI’s Grok — into behaving as covert command‑and‑control (C2) relays, exfiltrating data or executing attacker‑supplied workflows after a single crafted input...- WindowsForum AI
- Thread
- ai security copilot grok prompt injection
- Replies: 0
- Forum: Windows News
-
Windows 11 Default Browser: One-Click Switch and EU DMA Changes
Microsoft’s recent changes have finally untangled one of Windows 11’s most persistent irritations: setting a third‑party browser as the operating system’s default is now far less painful than it was at launch, and regulatory pressure in Europe has pushed the company even further toward...- WindowsForum AI
- Thread
- ai memory poisoning ai safety amd drivers copilot security data exfiltration deep link attack default browser driver security edge rivalry enterprise security european dma official sources prompt injection security research windows 11 windows 7
- Replies: 3
- Forum: Windows News