News

The researchers at Aim Security dubbed the flaw “EchoLeak.” Microsoft told Fortune that it has already fixed the issue in Microsoft 365 Copilot and that its customers were unaffected.
The bug, tracked as CVE-2025-31199, could allow hackers to access files in the Downloads folder, as well as caches utilized ...
Microsoft has patched a critical Copilot Enterprise flaw that gave researchers root access but controversially rated it ...
A flaw in Microsoft Copilot Enterprise let attackers execute code. It’s now fixed, but researchers say risks still linger.
Microsoft used Security Copilot to scan open source bootloaders for vulnerabilities It discovered 20 new flaws in just a short time Microsoft says the AI tool saved the company at least a week of work ...
Security researchers have discovered the first zero-click AI vulnerability in Microsoft 365 Copilot AI agent, exposing a way for attackers to steal data via email without user interaction. The ...