Zdnet
Reprompt Attack Allows Data Theft from Microsoft Copilot with One Click
First seen 15 Jan 2026, 04:59 UTC
•

•82% similarity
•31.3
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
Researchers have identified a new attack method called Reprompt that enables hackers to hijack Microsoft Copilot sessions with a single click. This vulnerability allows attackers to exfiltrate sensitive user data without requiring any additional plugins or tricks, posing a risk to users of Microsoft's AI assistant integrated into Windows and various applications.
ThreatCluster AI
How this analysis works