Уязвимости в Microsoft Copilot позволяли извлекать данные из подключенных приложений
Security researchers at Varonis identified three vulnerabilities collectively termed CoSnitch in Microsoft Copilot Personal, allowing malicious actors to force prompt execution and extract information from connected services. The issues, assigned the identifier CVE-2026-24301, were initially reported to Microsoft in December 2025, with initial mitigations arriving in February 2026 and full patches releasing on August 18, 2026. By leveraging an undocumented autorun parameter, attackers could trigger prompts via specially crafted links, enabling the AI assistant to read emails, calendar entries, and chat history before exfiltrating that data through encoded URLs. Additionally, the flaws allowed persistent memory poisoning, where hidden instructions survived session resets and password changes, posing a long-term risk to user data integrity.