Skip to content
Threat Feed

Tag

Copilot

6 briefs RSS
high threat

Microsoft 365 Copilot Multiple Vulnerabilities

A remote, anonymous attacker can exploit multiple vulnerabilities in Microsoft 365 Copilot to execute arbitrary program code and disclose confidential information.

Microsoft 365 Copilot microsoft365 copilot vulnerability code_execution information_disclosure
2r 2t
high advisory

CVE-2026-42893: M365 Copilot Command Injection Vulnerability

CVE-2026-42893 is a command injection vulnerability in M365 Copilot that allows an unauthorized attacker to perform tampering over a network.

M365 Copilot command-injection cve m365 copilot
1r 1t 1c
medium advisory

M365 Copilot Impersonation Jailbreak Attempt Detection

This detection identifies M365 Copilot impersonation and roleplay jailbreak attempts by analyzing exported eDiscovery prompt logs, searching for users manipulating the AI into adopting alternate personas or bypassing safety controls via roleplay keywords, categorizing specific impersonation types to identify persona injection attacks.

Microsoft 365 Copilot copilot jailbreak ai persona-injection
2r 1t
medium advisory

M365 Copilot Application Usage Pattern Anomalies

This detection identifies anomalous M365 Copilot usage patterns indicative of potential account compromise or automated abuse by flagging users accessing Copilot from multiple locations, generating excessive daily activity, or utilizing multiple Copilot applications.

Microsoft 365 Copilot m365 copilot anomaly detection account compromise
2r 1t
medium advisory

M365 Copilot Access from Non-Compliant Devices

Detects Microsoft 365 (M365) Copilot access from non-compliant or unmanaged devices, potentially indicating shadow IT, BYOD policy violations, or compromised endpoints accessing sensitive data.

M365 Copilot +1 m365 copilot device-compliance byod shadow-it
2r 1t
high advisory

Detection of M365 Copilot Jailbreak Attempts via Prompt Injection

This detection identifies attempts to jailbreak M365 Copilot by using prompt injection techniques to bypass safety controls and manipulate system behavior, potentially violating acceptable use policies.

Microsoft 365 Copilot m365 copilot jailbreak prompt-injection anomaly
2r 1t