Skip to content
Self-Propagating AI Worm Discovered in Microsoft Word Copilot

Self-Propagating AI Worm Discovered in Microsoft Word Copilot

First seen 30 Jul 2026, 08:20 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster July 30, 2026 at 22:28 UTC
  • A self-propagating worm can alter documents and spread through Microsoft Word Copilot.
  • The vulnerability allows hidden malicious instructions without needing access to the victim's tenant.
  • Microsoft's mitigation efforts have failed to close the broader vulnerability class.

A critical vulnerability in Microsoft Copilot for Word allows hidden malicious prompts in documents to alter generated content and spread to new files. Disclosed by researcher Håkon Måløy, this issue, termed 'Context Collapse, Part 3 – AI Worming through Word,' has persisted despite Microsoft's mitigation attempts since March 2026. The vulnerability enables attackers to exploit untrusted documents without requiring access to a victim's Microsoft 365 tenant. Måløy's research indicates that the worm can propagate through normal workflows, making it difficult to trace its origin. Microsoft has acknowledged the issue but has not yet provided a robust solution. The attack vector relies solely on the inclusion of a compromised document in Copilot's context. The situation remains urgent as the worm continues to pose a significant risk to businesses using Microsoft Word.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 52d ago How this analysis works

Timeline

2026-03-01
Research collaboration with Microsoft begins
Håkon Måløy starts working with Microsoft to address the discovered vulnerability in Copilot.
Theregister
2026-07-29
Vulnerability disclosed publicly
Håkon Måløy publicly reveals the self-propagating worm vulnerability after months of coordination with Microsoft.
Theregister
2026-07-30
Multiple articles report on vulnerability
Various cybersecurity outlets report on the Copilot vulnerability, emphasizing its potential impact and the lack of effective mitigation.
Gbhackers

More articles in this cluster (6)

Following this threat?

Track Microsoft in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed