PulseAugur
EN
LIVE 03:03:02

Microsoft Copilot Cowork Vulnerability Allows Data Exfiltration

Microsoft Copilot Cowork has a vulnerability that allows data exfiltration. The system permits agents to send emails to the user's inbox without explicit approval. These emails can contain external images that trigger network requests, potentially leaking data to attackers. Furthermore, if the agent can access OneDrive, it could leak pre-authenticated download links, enabling attackers to access sensitive files. AI

IMPACT This vulnerability highlights the ongoing challenge of securing agentic AI systems and preventing unauthorized data access.

RANK_REASON The cluster describes a security vulnerability in a specific product, which falls under the 'tool' category for security issues.

Read on Simon Willison →

AI-generated summary · Google Gemini · from 2 sources. How we write summaries →

Microsoft Copilot Cowork Vulnerability Allows Data Exfiltration

How we ranked this

Signal score
0 / 100
Composite score across the factors below. Higher = stronger signal that this story matters right now.
Newsworthiness bucket
Tool
The cluster describes a security vulnerability in a specific product, which falls under the 'tool' category for security issues.
Source corroboration
2 independent sources
Multiple independent publishers reporting the same story raises confidence that it's real and newsworthy.
Topics
safety, product
Editorial topic classification. Feeds into how the story surfaces on /topic/<slug> hub pages and into the per-entity coverage mix.
AI-industry relevance
High
Clearly on-topic for AI-industry coverage.
Story freshness
135 days old
Aged out of breaking-news scoring windows; ranking reflects the durable signal from the full source set.

Full methodology in our editorial standards.

COVERAGE [2]

  1. Simon Willison TIER_1 English(EN) ·

    Microsoft Copilot Cowork Exfiltrates Files

    <p><strong><a href="https://www.promptarmor.com/resources/microsoft-copilot-cowork-exfiltrates-files">Microsoft Copilot Cowork Exfiltrates Files</a></strong></p> The biggest challenge in designing agentic systems continues to be preventing them from enabling attackers to exfiltra…

  2. Mastodon — fosstodon.org TIER_1 English(EN) · [email protected] ·

    🧋 Microsoft Copilot Cowork Exfiltrates Files 「 This is done by exploiting the fact that, unlike other sensitive actions, sending emails and Teams messages to th

    🧋 Microsoft Copilot Cowork Exfiltrates Files 「 This is done by exploiting the fact that, unlike other sensitive actions, sending emails and Teams messages to the active user does not require human approval, and opening the compromised messages in Teams or Outlook can trigger atta…