Brief IA

Microsoft Copilot Vulnerable: A Worm Spreads Through Word

💻 Code & Dev·Tom Levy·

Microsoft Copilot Vulnerable: A Worm Spreads Through Word

Microsoft Copilot Vulnerable: A Worm Spreads Through Word
Key Takeaways
1A researcher has discovered a worm that hides in Word documents and targets Microsoft Copilot.
2The worm's invisible commands automatically spread with each reuse of the infected documents.
3Microsoft has not yet patched this vulnerability, despite 144 days and two attempts to resolve it.
💡Why it mattersThis vulnerability exposes Microsoft Word users to increased security risks, potentially compromising data privacy.
Le brief IA que lisent les pros

Le brief IA que les pros lisent chaque soir

Les 7 actus IA du jour, décryptées en 5 min. Gratuit.

Inclus dès l'inscription : notre sélection des meilleurs guides & comparatifs IA.

Choisis ton rythme

Gratuit · Pas de spam · Désabonnement en 1 clic

📄
Full Analysis

Microsoft Copilot Vulnerable: A Worm Spreads via Word

A security researcher has demonstrated how a prompt injection attack in Microsoft Copilot for Word can propagate autonomously. Håkon Måløy describes a worm-like attack: an attacker hides instructions in a document using white text on a white background with a tiny font size. Readers cannot see it, but Copilot can, as it removes color and font size before processing the document.

When someone uses this document as a source, Copilot executes the hidden instructions and copies them into the new file. This file then becomes a propagation vector. If this file is used as a template, the attack triggers again. A compromised market analysis from the internet could manipulate a financial report, which would then infect other reports.

Microsoft confirmed this behavior on March 31. Two attempts to fix it have failed. After 144 days, Måløy published his findings without any solution being implemented, although he withheld the payload text. AI researcher Andreas Kirsch recently joked about wishing someone would build exactly this worm to convince skeptics that the security risks associated with AI are real. Now, it exists. Prompt injections remain an unresolved security issue in the field of AI.

Brief IA — L'actualité IA en français

L'essentiel de l'actualité de l'intelligence artificielle, décrypté et expliqué chaque jour.