Microsoft patched a Copilot Studio prompt injection. The data exfiltrated anyway.
Microsoft assigned CVE-2026-21520, a CVSS 7.5 indirect prompt injection vulnerability, to Copilot Studio.
Explore articles tagged with Microsoft
Microsoft assigned CVE-2026-21520, a CVSS 7.5 indirect prompt injection vulnerability, to Copilot Studio.
Earlier this month, Microsoft launched Copilot Health, a new space within its Copilot app where users will be able to connect their medical records and ask specific questions about their health. A couple of days earlier, Amazon had announced that Health AI, an LLM-based tool previously restricted to members of its One Medical service, would….
Stanford researchers have dived deep into the unsettling phenomenon where AI-driven chatbots might be sending some users down the rabbit hole of delusion. Meanwhile, OpenAI has begun voicing concerns over the potential risks Microsoft's involvement could bring.
Anthropic has upgraded its Claude AI model with new capabilities for Microsoft Excel and PowerPoint, marking a strategic move to expand its enterprise footprint and potentially challenging Microsoft’s newly launched Copilot Cowork — which Claude also partially powers. The updated add-ins are available to Mac and Windows users on paid Claude plans starting today, March 11.
On a day filled with significant developments, Anthropic launched a new AI-driven code review tool, filed a lawsuit over a Pentagon blacklist, and announced a partnership with Microsoft, highlighting a crucial moment in the company's trajectory.
Microsoft introduces Agent 365 and Microsoft 365 Enterprise 7 to secure the burgeoning population of AI agents in corporate settings, preventing them from becoming 'double agents.'
Microsoft unveils Copilot Cowork, a groundbreaking AI collaboration with Anthropic, promising to revolutionize the way we work across Microsoft's suite of apps.