Ars Technica AI

A single click mounted a covert, multistage attack against Copilot

Back to overview

A single click triggered a hidden multi-stage attack on Microsoft Copilot that extracted data from chat histories. The exploit persisted even after users closed chat windows, raising serious security concerns about data exfiltration vulnerabilities in the AI assistant and the need for enhanced protection mechanisms.