By using this site, you agree to our Privacy Policy and Terms of Use.
Accept
VellaTimesVellaTimesVellaTimes
  • News
    NewsShow More
    A glowing quantum processor merging with a secure padlock against a dark technological background with blue and gold lighting.
    Quantum Pioneers Bennett and Brassard Win 2025 Turing Award
    March 19, 2026
    A high-tech semiconductor manufacturing line with robotic arms assembling advanced artificial intelligence microchips under cool blue lighting.
    Nvidia Restarts H200 AI Chip Production for China Sales
    March 19, 2026
    A glowing artificial intelligence computer chip resting on a high-tech server board inside a modern, dimly lit data center.
    Nvidia H200 AI Chips Get China Approval Amid DOJ Scrutiny
    March 19, 2026
    A heavily armed tactical police convoy parked on an airport tarmac near an unmarked transport plane under the flashing lights of a pre-dawn operation.
    Sebastian Marset Arrested: Uruguayan Drug Lord Sent to US
    March 19, 2026
    A glowing 3D molecular structure hovering in a modern laboratory with tropical plant leaves visible in a glass terrarium in the background.
    Malaria Drug Plant Pathway: Quinine Mystery Solved
    March 19, 2026
  • Technology
    TechnologyShow More
    A glowing artificial intelligence computer chip resting on a high-tech server board inside a modern, dimly lit data center.
    Nvidia H200 AI Chips Get China Approval Amid DOJ Scrutiny
    March 19, 2026
    A glowing, futuristic AI data center filled with advanced server racks representing the infrastructure discussed at NVIDIA GTC 2026.
    NVIDIA GTC 2026: Agentic AI and the $1 Trillion Future
    March 19, 2026
    Wide view of a modern semiconductor fabrication plant with automated wafer equipment and engineers in protective suits on the production floor.
    Semiconductor Capex Risk Grows as India Expands Fabs
    March 18, 2026
    A glowing smartphone screen showing an artificial intelligence chat interface on a dark desk, representing AI chatbot safety concerns.
    AI Chatbot Safety Concerns Mount Amid Lawsuits and Violence
    March 18, 2026
    A modern corporate glass building at dusk with a blue artificial intelligence hologram glowing above it.
    Meta Shares Jump as Zuckerberg Weighs Major Layoffs to Offset AI Spending
    March 18, 2026
  • AI
    AIShow More
    A high-tech semiconductor manufacturing line with robotic arms assembling advanced artificial intelligence microchips under cool blue lighting.
    Nvidia Restarts H200 AI Chip Production for China Sales
    March 19, 2026
    A modern digital screen displaying a search interface with artificial intelligence graphics, representing Google's new publisher controls and regulatory changes in the UK tech sector.
    Google to Introduce AI Opt-Out Controls Amid UK Competition Concerns
    March 19, 2026
    A sleek laptop on a modern office desk displaying an advanced AI interface integrated into a document, representing the new Google Gemini Workspace features.
    Google Gemini Workspace Features: Powerful AI Upgrades
    March 18, 2026
    A modern corporate boardroom featuring a glowing holographic interface representing enterprise AI agents managing data and workflows.
    Enterprise AI Agents: Microsoft & Nvidia Lead the Race
    March 18, 2026
    A high-tech conference stage featuring a large illuminated screen displaying glowing artificial intelligence and autonomous vehicle graphics.
    Nvidia GTC 2026: AI Revenue and Robotaxi Expansion
    March 18, 2026
  • Science
    ScienceShow More
    A glowing quantum processor merging with a secure padlock against a dark technological background with blue and gold lighting.
    Quantum Pioneers Bennett and Brassard Win 2025 Turing Award
    March 19, 2026
    A glowing 3D molecular structure hovering in a modern laboratory with tropical plant leaves visible in a glass terrarium in the background.
    Malaria Drug Plant Pathway: Quinine Mystery Solved
    March 19, 2026
    Close-up of ancient sedimentary rock layers with a glowing clock dial overlay, resting on a laboratory table alongside geological drill cores.
    New Rock Clock Refines Timeline of Earth’s Early Complex Animal Life
    March 18, 2026
    A digital artificial intelligence network mapped over a flooded city street, representing AI flood forecasting technology.
    Google Transforms AI Flood Forecasting Using 5 Million News Articles
    March 18, 2026
    A bright fireball meteor soaring over a suburban neighborhood during the day, leaving a glowing, fiery trail in the clear blue sky above residential rooftops.
    Ohio Meteor Boom: Daylight Fireball Triggers Massive Shock Wave
    March 18, 2026
  • World
    WorldShow More
    A heavily armed tactical police convoy parked on an airport tarmac near an unmarked transport plane under the flashing lights of a pre-dawn operation.
    Sebastian Marset Arrested: Uruguayan Drug Lord Sent to US
    March 19, 2026
    Industrial gas facility engulfed in flames and smoke with overlaid financial tickers showing surging global oil prices.
    Israel-Iran Conflict: Oil Prices Surge After Strikes
    March 19, 2026
    A dark street in Havana, Cuba, entirely without power during a nationwide electrical grid collapse, illuminated only by faint flashlights and headlights.
    Cuba Blackout: Nationwide Grid Collapses Amid U.S. Blockade
    March 18, 2026
    Nighttime rescue operations underway at the destroyed Omid Addiction Treatment Hospital in Kabul following a devastating airstrike, with first responders searching the rubble using flashlights.
    Pakistan Airstrike on Kabul Hospital Leaves Hundreds Dead Amid Escalating Tensions
    March 18, 2026
    A large commercial oil tanker anchored near an illuminated coastal energy hub at dusk.
    Strait of Hormuz Crisis: Oil Spikes & US Diesel Tops $5
    March 18, 2026
  • Bookmarks
Search
Category
  • News
  • Technology
  • AI
  • Science
  • World
Company
  • About Us
  • Contact Us
  • Fact Checking Policy
  • Terms & Conditions
  • Privacy Policy
  • Copyright Policy
Resources
  • Home
  • Web Stories
  • Bookmarks
  • Interests
  • Disclaimer
  • Sitemap
© 2022 VellaTimes • All Rights Reserved.
Reading: Microsoft Copilot Reprompt attack patched after one click
Share
Notification Show More
Font ResizerAa
VellaTimesVellaTimes
Font ResizerAa
  • News
  • Technology
  • AI
  • Science
  • World
Search
  • Explore
    • News
    • Technology
    • AI
    • Science
    • World
  • Useful Links
    • About Us
    • Contact Us
    • Fact Checking Policy
    • Terms & Conditions
    • Privacy Policy
    • Copyright Policy
  • Home
  • Web Stories
  • Bookmarks
  • Interests
  • Disclaimer
  • Sitemap
© 2022 VellaTimes • All Rights Reserved.
News

Microsoft Copilot Reprompt attack patched after one click

Rakesh Paul
Last updated: 27/01/2026
Rakesh Paul
Share
5 Min Read
A laptop displaying an AI assistant chat window next to an email with a highlighted link, suggesting a cybersecurity risk scenario.

A newly disclosed “Reprompt” technique showed how attackers could use a single click on a crafted Microsoft Copilot link to take over a victim’s Copilot session and quietly pull out sensitive information. Security researchers say the attack worked by hiding malicious instructions inside a legitimate-looking URL, tricking Copilot into running those instructions automatically.

Contents
How the “Reprompt” attack workedThree techniques used to bypass protectionsWhy detection was difficultWhat users should do next

The researchers behind the finding, Varonis, said the issue affected Copilot Personal and that Microsoft confirmed it has been patched, while enterprise customers using Microsoft 365 Copilot were not impacted. BleepingComputer reported that Varonis disclosed the issue to Microsoft on August 31 last year and that a fix was issued on January 14, 2026.

How the “Reprompt” attack worked

Varonis explained that Reprompt could compromise victims with just one click on a legitimate Microsoft link, without requiring plugins or additional interaction with Copilot. BleepingComputer similarly reported that the method could keep access to a victim’s large language model session after a single link click, enabling “invisible” data exfiltration.

A key part of the attack is that Copilot can accept prompts through the “q” parameter in a URL and execute them automatically when the page loads. Researchers said an attacker could embed instructions in that URL parameter, send the link to a target, and then cause Copilot to perform actions on the user’s behalf without the user realizing it.

Three techniques used to bypass protections

BleepingComputer and Varonis described Reprompt as a chain built from three techniques used together to bypass Copilot protections and keep data flowing out. The first technique, described as “Parameter-to-Prompt” or “Parameter 2 Prompt” injection, relies on using the “q” URL parameter to inject instructions that can trigger sensitive actions, including pulling conversation memory.

The second method is a “double-request” approach, which the researchers said took advantage of an observed behavior where Copilot’s data-leak safeguards applied only to the first web request. Varonis showed an example prompt that asks Copilot to make every function call twice and display only the best result, and reported that the second attempt could reveal data that the first attempt withheld.

The third method is a “chain-request” technique, where Copilot continues receiving instructions from an attacker-controlled server in a back-and-forth sequence, using each response to generate the next request. Varonis said this can make the exfiltration continuous, hidden, and dynamic, because the most revealing instructions arrive later from the attacker’s server rather than being visible in the initial prompt.

Why detection was difficult

Varonis said Reprompt could bypass enterprise security controls and siphon data “without detection,” in part because client-side monitoring tools can’t easily determine what data is being exfiltrated by inspecting only the starting prompt. BleepingComputer quoted Varonis warning that the “real instructions” are hidden in follow-up requests delivered from the server after the initial prompt, making it hard to understand what Copilot is being told to do based on the original link alone.

BleepingComputer also noted that Reprompt could leverage an existing authenticated Copilot session and remain active even after the Copilot tab was closed. Varonis similarly said the attacker could maintain control even when the chat is closed, allowing the victim’s session to be silently exfiltrated after that first click.

What users should do next

BleepingComputer reported that there was no sign of Reprompt exploitation in the wild and advised users to apply the latest Windows security update as soon as possible. The same report also included an update noting that the fix was not necessarily tied to Patch Tuesday and was handled separately.

Varonis advised users to be cautious with links that open AI tools or pre-fill prompts, to review any prompt that appears automatically, and to close and report a session if the AI tool behaves unexpectedly or starts requesting unusual personal details. The researchers framed Reprompt as a reminder that AI assistants can hold sensitive context and that this trust can be exploited, turning a chat assistant into a data-exfiltration channel with just one click.

TAGGED: AI security, cybersecurity, data exfiltration, Microsoft Copilot, prompt injection, Reprompt, Varonis
Share This Article
Facebook Twitter Whatsapp Whatsapp Telegram Copy Link
By Rakesh Paul
I'm the Co-Founder of VellaTimes and an experienced digital marketer. With substantial experience in the blogging industry, I love crafting insightful and engaging news articles on technology, sports, and automobiles.
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *


Most Read

Nuclear Fusion Breakthroughs Accelerate Clean Energy

March 8, 2026

Gaza Military Strikes Intensify as Trump and Netanyahu Prepare for High-Stakes Meeting

February 11, 2026

Iran internet blackout as protests grow, deaths rise

January 9, 2026

ChatGPT outage: OpenAI reports partial disruption worldwide

January 27, 2026

Quantum Gravity Experiments Challenge Classical Physics

March 11, 2026

Critical BeyondTrust RCE Flaw Under Active Attack: What You Need to Know

February 18, 2026

Related News

A glowing quantum processor merging with a secure padlock against a dark technological background with blue and gold lighting.
News

Quantum Pioneers Bennett and Brassard Win 2025 Turing Award

Nisha Pradhan Nisha Pradhan March 19, 2026
A high-tech semiconductor manufacturing line with robotic arms assembling advanced artificial intelligence microchips under cool blue lighting.
News

Nvidia Restarts H200 AI Chip Production for China Sales

Sameer Katoch Sameer Katoch March 19, 2026
A glowing artificial intelligence computer chip resting on a high-tech server board inside a modern, dimly lit data center.
News

Nvidia H200 AI Chips Get China Approval Amid DOJ Scrutiny

Rakesh Paul Rakesh Paul March 19, 2026

About Us

VellaTimesVellaTimesVellaTimes

VellaTimes is a leading news portal that covers the latest trending news in technology, lifestyle, entertainment, automobiles, travel, and sports.

Explore

  • News
  • Technology
  • AI
  • Science
  • World

Useful Links

  • About Us
  • Contact Us
  • Fact Checking Policy
  • Terms & Conditions
  • Privacy Policy
  • Copyright Policy

Subscribe Us

Subscribe to our newsletter for the Latest News and Top Stories!

© 2022 VellaTimes • All Rights Reserved.
  • Home
  • Web Stories
  • Bookmarks
  • Interests
  • Disclaimer
  • Sitemap
adbanner
AdBlocker Detected
Our site is an advertising supported site. Please whitelist us to support our work.
Okay, I'll Whitelist