Researcher's Word Worm Hijacks Microsoft Copilot; Fix Eludes 144 Days
Article summary
Quick briefing — cleaned from the original RSS feed
Håkon Måløy built a self-spreading worm hiding prompt injections in Word docs, hijacking Microsoft Copilot. Microsoft confirmed March 31 but failed two fixes; 144 days later no patch exists. Security researcher Håkon Måløy demonstrated a self-spreading worm that hides prompt injections in Word docs and hijacks Microsoft Copilot. Microsoft confirmed the behavior on March 31 but failed two fix attempts, leaving the vulnerability open for 144 days. Key facts Attack confirmed by Microsoft on March…
1Key Takeaways
- Håkon Måløy built a self-spreading worm hiding prompt injections in Word docs, hijacking Microsoft Copilot.
- Microsoft confirmed March 31 but failed two fixes; 144 days later no patch exists.
- Security researcher Håkon Måløy demonstrated a self-spreading worm that hides prompt injections in Word docs and hijacks Microsoft Copilot.
- Microsoft confirmed the behavior on March 31 but failed two fix attempts, leaving the vulnerability open for 144 days.
2AIWedia Score
8.4/10
High relevance — worth your attention today
Based on source trust, recency, category impact, and story depth.
3Why it matters
Coding AI shifts how fast software ships and how much human review each change needs. DEV — ML reports that håkon Måløy built a self-spreading worm hiding prompt injections in Word docs, hijacking Microsoft Copilot.
Explore related
Browse toolsCoding AI news
Explore curated coding ai tools on AIWedia — compare, rank, and launch from our directory.
Full story on DEV — ML
Read full articleHeadlines aggregated via RSS for discovery on AIWedia. Original content © DEV — ML. We link to the source and do not republish full articles.