A novel form of prompt injection has been identified where hidden instructions within a Word document can survive a Copilot for Word session. These instructions are then copied into the document Copilot drafts, effectively infecting subsequent sessions. The spread is contingent on users reusing documents, making it a slower, less conspicuous threat than traditional worms. AI
IMPACT This vulnerability highlights potential risks in AI-assisted document creation and collaboration, necessitating careful handling of shared documents.
RANK_REASON The item describes a security vulnerability in a specific AI-powered product, rather than a core AI release or research.
Read on Mastodon — fosstodon.org →
AI-generated summary · Google Gemini · from 1 sources. How we write summaries →