Prompt Injection
The latest Prompt Injection coverage — news, analysis, and updates from the WindowsNews.AI desk.
CVE-2025-32711: EchoLeak zero-click flaw in M365 Copilot lets emails exfiltrate data
In June 2025, cybersecurity researchers uncovered a critical zero-click vulnerability (CVE-2025-32711) in Microsoft 365 Copilot, marking one of the most severe AI-assisted security flaws to date....
Microsoft Copilot security flaws expose AI prompt injection and data leak risks in business apps
Microsoft's Copilot, an AI-driven assistant integrated into the Microsoft 365 suite, has recently been at the center of significant security concerns. These issues not only highlight vulnerabilities...
Zero-click EchoLeak flaw in Copilot allows data theft via poisoned prompts
A newly discovered vulnerability in Microsoft Copilot, dubbed EchoLeak (CVE-2025-32711), has exposed a critical flaw in AI-powered productivity tools, allowing attackers to exfiltrate sensitive data...
EchoLeak flaw lets attackers silently drain Microsoft 365 Copilot documents without a single click
A newly discovered zero-click data leak vulnerability in Microsoft 365 Copilot has sent shockwaves through the enterprise security community, exposing sensitive business documents through the AI...
CVE-2025-32711: Critical M365 Copilot Vulnerability Exposes Sensitive Data
A newly discovered vulnerability in Microsoft 365 Copilot, tracked as CVE-2025-32711, has sent shockwaves through the cybersecurity community. This critical information disclosure flaw could allow...
Azure AI Content Safety: How Microsoft is Combating Prompt Injection Threats in 2024
As artificial intelligence becomes increasingly embedded in enterprise workflows, the security risks associated with large language models (LLMs) have grown exponentially. Microsoft's Azure AI...
Critical Vulnerabilities in AI Guardrails Exposed Through Unicode Evasion Techniques
Introduction Recent research has unveiled significant vulnerabilities in AI guardrail systems developed by leading technology companies, including Microsoft, Nvidia, and Meta. These systems, designed...
Emoji Smuggling: Unveiling Critical Vulnerabilities in AI Safety Systems
Introduction Recent research has uncovered a significant vulnerability in the AI safety systems of major technology companies, including Microsoft, Nvidia, and Meta. This exploit, termed "emoji...
Emoji Smuggling: Unveiling Critical Vulnerabilities in AI Guardrails
Introduction Recent research has unveiled a significant vulnerability in artificial intelligence (AI) security systems, particularly those designed to safeguard large language models (LLMs). This...
Emoji Smuggling: A New Threat to AI Guardrails in Large Language Models
Introduction Recent research has unveiled a significant vulnerability in the security mechanisms of Large Language Models (LLMs). This exploit, termed "emoji smuggling," allows adversaries to bypass...