Researchers hack Microsoft Copilot via secret ?autorun=1 parameter

Varonis researchers exploited Microsoft 365 Copilot Enterprise by asking the AI itself to reveal an undocumented prompt parameter, ?autorun=1, that bypasses user consent for executing commands. The exploit could exfiltrate user data when a user clicks a link.
Featured · Lior Adar
1 source
Cybersecurity by email
Get an email when there's news on Cybersecurity
No news that day, no email.
More stories today
- NYSE used Anthropic's Project Glasswing to find cyber flaws
- Cloudflare CEO says ready to block AI crawlers from millions of sites
- Napster CEO: Microsoft helps reinvent company with agentic AI
- Google shares 4 engineering patterns from AI Agents Challenge
- Anthropic launches commerce agent blueprint for Claude