SearchLeak: Prompt-inject enterprise Copilot with a search (opens in new tab)
Chatbots are a security hole the moment you let them do real work — because you can always prompt-inject a chatbot. And if Microsoft does this stupid thing, you can break in and get confidential company information. This one comes from Varonis, who found the “reprompt” attack in January — where you hack Copilot by […]
Read the original article