Back Feeds.4Sysops Microsoft 365 Copilot Word worm survives model updates
A self-propagating Word worm can still alter documents and copy hidden instructions into new files after Microsoft 365 Copilot mitigations, including a model upgrade, failed to close the broader vulnerability class. The attack requires no macros, executable code, or access to a victim’s Microsoft 365 tenant—only a malicious document that enters Copilot’s context. Source
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
