Tag: Microsoft 365 Copilot

  • Slashdot: Microsoft Relaunches Copilot for Business With Free AI Chat and Pay-As-You-Go Agents

    Source URL: https://slashdot.org/story/25/01/15/1430238/microsoft-relaunches-copilot-for-business-with-free-ai-chat-and-pay-as-you-go-agents?utm_source=rss1.0mainlinkanon&utm_medium=feed Source: Slashdot Title: Microsoft Relaunches Copilot for Business With Free AI Chat and Pay-As-You-Go Agents Feedly Summary: AI Summary and Description: Yes Summary: Microsoft has relaunched its free Copilot for businesses as Microsoft 365 Copilot Chat, enhancing it with AI agents designed to streamline work processes. This innovation is part of Microsoft’s…

  • Embrace The Red: Microsoft 365 Copilot Generated Images Accessible Without Authentication — Fixed!

    Source URL: https://embracethered.com/blog/posts/2025/m365-copilot-image-generation-without-authentication/ Source: Embrace The Red Title: Microsoft 365 Copilot Generated Images Accessible Without Authentication — Fixed! Feedly Summary: I regularly look at how the system prompts of chatbots change over time. Updates frequently highlight new features being added, design changes that occur and potential areas that might benefit from more security scrutiny. A…

  • Hacker News: Surf advises not to use Microsoft 365 Copilot for now due to privacy risks

    Source URL: https://www.surf.nl/en/news/surf-advises-not-to-use-microsoft-365-copilot-for-the-time-being-due-to-privacy-risks Source: Hacker News Title: Surf advises not to use Microsoft 365 Copilot for now due to privacy risks Feedly Summary: Comments AI Summary and Description: Yes Summary: The text discusses a Data Protection Impact Assessment (DPIA) conducted on Microsoft 365 Copilot, revealing significant privacy risks for its users, especially in educational settings.…

  • Schneier on Security: Race Condition Attacks against LLMs

    Source URL: https://www.schneier.com/blog/archives/2024/11/race-condition-attacks-against-llms.html Source: Schneier on Security Title: Race Condition Attacks against LLMs Feedly Summary: These are two attacks against the system components surrounding LLMs: We propose that LLM Flowbreaking, following jailbreaking and prompt injection, joins as the third on the growing list of LLM attack types. Flowbreaking is less about whether prompt or response…

  • The Register: Microsoft 365 Copilot trips over angle brackets, frustrating coders

    Source URL: https://www.theregister.com/2024/11/19/microsoft_365_copilot_symbol/ Source: The Register Title: Microsoft 365 Copilot trips over angle brackets, frustrating coders Feedly Summary: Chatbot seems to choke when fed tricky less-than character Microsoft 365 Copilot appears to have developed an allergy to the less-than typographical symbol, which is preventing users from pasting HTML markup and programming code into the text…

  • CSA: ConfusedPilot: Novel Attack on RAG-based AI Systems

    Source URL: https://cloudsecurityalliance.org/articles/confusedpilot-ut-austin-symmetry-systems-uncover-novel-attack-on-rag-based-ai-systems Source: CSA Title: ConfusedPilot: Novel Attack on RAG-based AI Systems Feedly Summary: AI Summary and Description: Yes **Summary:** The text discusses a newly discovered attack method called ConfusedPilot, which targets Retrieval Augmented Generation (RAG) based AI systems like Microsoft 365 Copilot. This attack enables malicious actors to influence AI outputs by manipulating…

  • Hacker News: Invisible text that AI chatbots understand and humans can’t?

    Source URL: https://arstechnica.com/security/2024/10/ai-chatbots-can-read-and-write-invisible-text-creating-an-ideal-covert-channel/ Source: Hacker News Title: Invisible text that AI chatbots understand and humans can’t? Feedly Summary: Comments AI Summary and Description: Yes Summary: The text discusses a sophisticated method of exploiting vulnerabilities in AI chatbots like Claude and Copilot through “ASCII smuggling,” where invisible characters are used to embed malicious instructions. This innovative…

  • The Register: Copilot’s crudeness has left Microsoft chasing Google, again

    Source URL: https://www.theregister.com/2024/10/09/copilot_vs_notebooklm/ Source: The Register Title: Copilot’s crudeness has left Microsoft chasing Google, again Feedly Summary: Surely Redmond knows that almost nobody has tamed unstructured data? Opinion A year ago it looked as if the world could be Microsoft’s oyster. The software giant dominated the enterprise, was catching up to cloudy rivals, and then…

  • Embrace The Red: Microsoft Copilot: From Prompt Injection to Exfiltration of Personal Information

    Source URL: https://embracethered.com/blog/posts/2024/m365-copilot-prompt-injection-tool-invocation-and-data-exfil-using-ascii-smuggling/ Source: Embrace The Red Title: Microsoft Copilot: From Prompt Injection to Exfiltration of Personal Information Feedly Summary: This post describes vulnerability in Microsoft 365 Copilot that allowed the theft of a user’s emails and other personal information. This vulnerability warrants a deep dive, because it combines a variety of novel attack techniques…