Microsoft says Copilot was summarizing confidential emails without permission

0
945

Microsoft Copilot read confidential emails without permission

A bug in Microsoft 365 and Copilot has been causing the AI assistant to summarize emails that were explicitly labeled as confidential, according to a report from Bleeping Computer. The Copilot security bug reportedly bypassed organizations' data loss prevention (DLP) policies, which are used to protect sensitive information.

The bug specifically affected Copilot Chat. According to Microsoft's documentation, it caused emails with a confidential label to be "incorrectly processed by Microsoft 365 Copilot chat.”

For context, Copilot Chat, which rolled out to Microsoft 365 apps like Word, Excel, Outlook, and PowerPoint for enterprise customers last fall, is pitched as a content-aware AI assistant. Tech companies like Microsoft are integrating AI assistants into virtually all of their products, creating new types of cybersecurity risks in the process. Businesses using AI assistants could be at risk from prompt injection and data compliance violations, for instance.

Mashable Light Speed

The Copilot Chat issue, tracked internally as CW1226324, was first detected on Jan. 21 and impacts Copilot’s "work tab" chat feature, Bleeping Computer reports. Per Microsoft’s advisory, Copilot Chat was incorrectly pulling in and summarizing emails from users’ Sent Items and Drafts folders — even when those messages had sensitivity labels designed to block automated access. In other words, emails and sensitive information that were supposed to be off-limits weren’t.

Microsoft confirmed to Bleeping Computer that a code issue was responsible and said it began rolling out a fix in early February. The company is continuing to monitor deployment and reach out to some affected users to verify the patch is working. Additionally, Microsoft hasn’t disclosed how many organizations were impacted, noting that the scope may change as the investigation continues.

Rechercher
Catégories
Lire la suite
Home & Garden
Amazon’s Best-Selling Trousers Offer ‘Legging Comfort with a Dress Pant Look’—Buy ‘Em for $17 Right Now
No One at the Office Will Believe These Work Pants ‘Feel Like Leggings but Better’ and for Only...
Par Test Blogger9 2026-02-27 18:00:26 0 653
Jeux
The Hundred Line has changed how I think about choice and consequences in games, and I can't put it back in the box
The Hundred Line has changed how I think about choice and consequences in games, and I can't put...
Par Test Blogger6 2026-02-15 23:00:12 0 964
Technology
Jumpstart your fitness journey with 33% off the Renpho Smart Scale
Best smart scale deal: Get 33% off the Renpho Smart Scale...
Par Test Blogger7 2026-03-11 16:00:23 0 501
Technology
This huge 49-inch OLED INNOCN gaming monitor has never been cheaper at Amazon — save $300
Best gaming monitor deal: INNOCN 49-inch OLED hits lowest price...
Par Test Blogger7 2026-02-13 10:00:13 0 1KB
Jeux
The next Diablo 4 class reveal has a date, but it's the promise of something new for D2 Resurrected that has me smiling
The next Diablo 4 class reveal has a date, but it's the promise of something new for D2...
Par Test Blogger6 2026-02-06 18:00:37 0 1KB