#reprompt — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #reprompt, aggregated by home.social.
-
Man muss sich auch stets vor die Augen führen, dass Microsoft Copilot nicht ein Dienst ist, der entfernt irgendwo läuft.
Es ist ein Dienst, der Zugriff auf das lokale Gerät hat und alles was darauf gespeichert ist.
Bei #reprompt geht es darum, dass der Angreifer Zugriff auf diese Funktionen, durch eine magelhafte Isolation der Kommunikation erhält.
Das ganze ist so amateurhaft... man muss sich echt fragen, ob diese Sicherheitslücke auf das Konto eines "Vibe Coders" geht.
-
Apparently #CoPilot can open links, and will parse anything after a "q" parameter in the URL as a query.
Headline: #Reprompt attack hijacked #Microsoft Copilot sessions for data theft
-
Apparently #CoPilot can open links, and will parse anything after a "q" parameter in the URL as a query.
Headline: #Reprompt attack hijacked #Microsoft Copilot sessions for data theft
-
In Microsofts #copilot gab es eine 1 click #Reprompt Schwachstelle, mit der Angreifer beliebige Daten des Nutzers abziehen konnten. Zeigt, wie windig dieser Ansatz Microsofts in Bezug auf Sicherheit und Schutz sensitiver Daten ist.
https://borncity.com/blog/2026/01/16/varonis-legt-reprompt-angriff-auf-microsofts-copilot-offen/ -
In Microsofts #copilot gab es eine 1 click #Reprompt Schwachstelle, mit der Angreifer beliebige Daten des Nutzers abziehen konnten. Zeigt, wie windig dieser Ansatz Microsofts in Bezug auf Sicherheit und Schutz sensitiver Daten ist.
https://borncity.com/blog/2026/01/16/varonis-legt-reprompt-angriff-auf-microsofts-copilot-offen/ -
Microsoft Copilot pod atakiem – jedno kliknięcie wystarczy do wycieku danych
Czy jedno kliknięcie może zmienić Copilota w kanał do wycieku danych? Niestety tak – i to w sposób zaskakująco elegancki.
Czytaj dalej:
https://pressmind.org/microsoft-copilot-pod-atakiem-jedno-klikniecie-wystarczy-do-wycieku-danych/#PressMindLabs #iniekcjapromptow #microsoft365copilot #microsoftcopilot #reprompt #varonis