I’m shocked! Shocked I say! Well.. not that shocked.
RazzmatazzChemical46 on
“an attacker would simply have to have a user open a phishing link, which would then initiate a multi-stage prompt injected using a „q parameter.“ Once clicked, an attacker would be able to ask Copilot for information about the user and send it to their own servers.”
Come on. Phishing?? Fckin click bait.
salexy on
And they steal your data for the stupidest reasons. Someone broke into my Instagram recently to share a fucking Grok crypto scam post. I can’t for the life of me figure out why.
Excitium on
Just your typical slopilot slop brought to you by Microslop.
DarthJDP on
This is why I switched to linux. I dont want an agentic AI operating system. Thanks!
Lower_Ad_1317 on
It has been patched. Keep your security up to date.
Saved you a click.
myasco42 on
Why does it says „bypasses enterprise security controls entirely“? Your settings allowed a web-site (frankly speaking I have no idea how exactly Copilot works there <_<) to access your local data. So there is no bypass.
And how exactly does this Copilot work? Opening the URL prompts the user to open a local application? Or what?
mrknickerbocker on
Patched: This attack
Not patched: This attack, but written as a poem
CrisEXE__ on
I have AI data?
buttflapper444 on
Then why don’t we sue them for everything they’re worth
coolon23 on
Injection Attack are back on the menu due to LLMs boys
alkonium on
More reason not to use it. I made sure to uninstall copilot from my PC.
Vorenthral on
Cyber security in the age of AI is going to be a gold mine.
Shadowolf75 on
Microslop nooooo
Storm_AT on
welp im safe then lmao
FredFredrickson on
Well they didn’t steal my AI data because I don’t use that bullshit.
Leave A Reply
Du musst angemeldet sein, um einen Kommentar abzugeben.
17 Kommentare
Well that’s just great
I’m shocked! Shocked I say! Well.. not that shocked.
“an attacker would simply have to have a user open a phishing link, which would then initiate a multi-stage prompt injected using a „q parameter.“ Once clicked, an attacker would be able to ask Copilot for information about the user and send it to their own servers.”
Come on. Phishing?? Fckin click bait.
And they steal your data for the stupidest reasons. Someone broke into my Instagram recently to share a fucking Grok crypto scam post. I can’t for the life of me figure out why.
Just your typical slopilot slop brought to you by Microslop.
This is why I switched to linux. I dont want an agentic AI operating system. Thanks!
It has been patched. Keep your security up to date.
Saved you a click.
Why does it says „bypasses enterprise security controls entirely“? Your settings allowed a web-site (frankly speaking I have no idea how exactly Copilot works there <_<) to access your local data. So there is no bypass.
And how exactly does this Copilot work? Opening the URL prompts the user to open a local application? Or what?
Patched: This attack
Not patched: This attack, but written as a poem
I have AI data?
Then why don’t we sue them for everything they’re worth
Injection Attack are back on the menu due to LLMs boys
More reason not to use it. I made sure to uninstall copilot from my PC.
Cyber security in the age of AI is going to be a gold mine.
Microslop nooooo
welp im safe then lmao
Well they didn’t steal my AI data because I don’t use that bullshit.