CVE Tools

Уязвимости в Microsoft Copilot позволяли извлекать данные из подключенных приложений

Хакер (xakep.ru)By Мария Нефёдова

PoC publicMicrosoft Copilot Personal

Our summary

Security researchers at Varonis identified three vulnerabilities collectively termed CoSnitch in Microsoft Copilot Personal, allowing malicious actors to force prompt execution and extract information from connected services. The issues, assigned the identifier CVE-2026-24301, were initially reported to Microsoft in December 2025, with initial mitigations arriving in February 2026 and full patches releasing on August 18, 2026. By leveraging an undocumented autorun parameter, attackers could trigger prompts via specially crafted links, enabling the AI assistant to read emails, calendar entries, and chat history before exfiltrating that data through encoded URLs. Additionally, the flaws allowed persistent memory poisoning, where hidden instructions survived session resets and password changes, posing a long-term risk to user data integrity.

Read at Хакер (xakep.ru)

Хакер (xakep.ru) publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store