Reprompt Attack Allows Data Theft from Microsoft Copilot with One Click

Reprompt Attack Allows Data Theft from Microsoft Copilot with One Click

First seen 15 Jan 2026, 04:59 UTC BleepingcomputerTech.YahooZdnet 82% similarity 31.3

Article Content

Browse articles
ThreatCluster

Researchers have identified a new attack method called Reprompt that enables hackers to hijack Microsoft Copilot sessions with a single click. This vulnerability allows attackers to exfiltrate sensitive user data without requiring any additional plugins or tricks, posing a risk to users of Microsoft's AI assistant integrated into Windows and various applications.

ThreatCluster AI How this analysis works

Community

Browse all →