Zero-click AI data leak flaw uncovered in Microsoft 365 Copilot

bleepingcomputer.com/news/security/zero-click-ai-data-leak-flaw-uncovered-in-microsoft-365-copilot

A new attack dubbed 'EchoLeak' is the first known zero-click AI vulnerability that enables attackers to exfiltrate sensitive data from Microsoft 365 Copilot from a user's context without interaction.
The attack was devised by Aim Labs researchers in January 2025, who reported their…

This story appeared on bleepingcomputer.com, 2025-06-12 03:00:53.183000.
The Entire Business World on a Single Page. Free to Use →