PulseAugur
EN
LIVE 18:36:47

Microsoft Copilot for Word vulnerable to hidden prompt injection

A security researcher has discovered a vulnerability in Microsoft's Copilot for Word that allows malicious instructions to be hidden within documents using invisible formatting. These hidden instructions can manipulate financial figures and, critically, propagate themselves into newly generated documents, effectively turning user workflows into a distribution mechanism. Existing security tools, designed to detect macros or malicious code, are ill-equipped to identify this form of prompt injection, which exploits the model's inability to distinguish between user-intended content and hidden instructions. AI

IMPACT Highlights a new class of prompt injection attacks targeting document-based AI assistants, potentially impacting data integrity and security in enterprise workflows.

RANK_REASON Disclosure of a vulnerability in a specific AI-powered product feature.

Read on dev.to — LLM tag →

AI-generated summary · Google Gemini · from 1 sources. How we write summaries →

Microsoft Copilot for Word vulnerable to hidden prompt injection

COVERAGE [1]

  1. dev.to — LLM tag TIER_1 English(EN) · Cor E ·

    Copilot for Word Will Copy Its Own Poison Into Every Document It Touches

    <p>A researcher just disclosed something that should worry anyone using Microsoft 365 Copilot for document generation: Copilot for Word can be manipulated by hidden, invisible-formatted text embedded in a document, and the resulting bad behavior doesn't stay contained to that one…