Get all your news in one place.
100's of premium titles.
One app.
Start reading
TechRadar
TechRadar
Sead Fadilpašić

Microsoft Copilot AI attack took just a single click to compromise users - here's what we know

AI apps.
  • Varonis discovers new prompt-injection method via malicious URL parameters, dubbed “Reprompt.”
  • Attackers could trick GenAI tools into leaking sensitive data with a single click
  • Microsoft patched the flaw, blocking prompt injection attacks through URLs

Security researchers Varonis have discovered Reprompt, a new way to perform prompt-injection style attacks in Microsoft Copilot which doesn’t include sending an email with a hidden prompt or hiding malicious commands in a compromised website.

Sign up to read this article
Read news from 100's of titles, curated specifically for you.
Already a member? Sign in here
Related Stories
Top stories on inkl right now
One subscription that gives you access to news from hundreds of sites
Already a member? Sign in here
Our Picks
Fourteen days free
Download the app
One app. One membership.
100+ trusted global sources.