Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
News Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps
The Hacker News
2 hours from now

Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps

By info@thehackernews.com (The Hacker News)

Varonis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on a crafted link to silently pull data from connected apps and other information available to the victim's Copilot session. The flaws, which the researchers collectively named CoSnitch, turn in part on an undocumented URL parameter that the assistant itself surfaced

More from The Hacker News

Leaving Threaticon

This link opens an external site that isn't part of the platform.