A security researcher built a self-spreading worm that hides inside Word docs and hijacks Microsoft Copilot
A security researcher demonstrated a self-spreading prompt injection attack that exploits Microsoft Copilot within Word documents.
The attack uses hidden, white-on-white text to inject malicious instructions into Microsoft Copilot. When a user interacts with an infected document, the AI can be manipulated to spread the payload to new files. Microsoft has reportedly failed to address the vulnerability after multiple reports over 144 days.