News

Researchers found a security flaw in OneDrive File Picker that grants apps access to any and all files in the account when ...
Be careful when using OneDrive’s File Picker to share access to your documents. Vague language indicates services like ...
Microsoft is being extremely careless with security boundaries in OneDrive. A recent Oasis Security analysis revealed that ...
Oasis Security told Microsoft (and the apps that connect with OneDrive) about the flaw before sharing it, but Redmond has said that a fix isn't a priority for the company. A spokesperson for Micro ...
Aim Security researchers found a zero-click vulnerability in Microsoft 365 Copilot that could have been exploited to have AI tools like RAG and AI agents hand over sensitive corporate data to ...
Security researchers uncovered “EchoLeak,” a zero-click flaw in Microsoft 365 Copilot, exposing sensitive data without user action. Microsoft has mitigated the vulnerability.
Microsoft has fixed a dangerous zero-click attack in its Generative Artificial Intelligence (GenAI) model which could have ...
Researchers said the vulnerability, dubbed “EchoLeak,” could allow a hacker to access data without any specific user ...
A single email can silently trigger Copilot to exfiltrate sensitive corporate data — no clicks, no warnings, no user action.
Security researchers at Aim Security discovered "EchoLeak", the first known zero-click artificial intelligence (AI) ...