[research]By ByteBulletin Editor
Researchers Trick Copilot Into Revealing Its Own Secrets, Then Exploit Them in One-Click Attack
A new attack abuses an undocumented Microsoft 365 Copilot parameter that the AI itself disclosed, enabling silent data exfiltration from a single link click.
