National Cyber Warfare Foundation (NCWF)

Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps


0 user ratings
2026-08-18 18:34:04
milo
Privacy , Blue Team (CND)
Varonis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on a crafted link to silently pull data from connected apps and other information available to the victim's Copilot session.

The flaws, which the researchers collectively named CoSnitch, turn in part on an undocumented URL parameter that the assistant itself surfaced



Source: TheHackerNews
Source Link: https://thehackernews.com/2026/08/microsoft-copilot-personal-flaws-could.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Privacy
Blue Team (CND)



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.