Firehose

Filtered to Hacker News, tagged “Microsoft Word” · clear filters

All PeopleCompaniesPapersPodcastsHacker News

Browse by tag

29 JUL 2026 · Hacker News · 383 pts · 297 comments ↗

Researchers have discovered a vulnerability in Microsoft's Copilot for Word, allowing document-borne AI worms to self-propagate through trusted document workflows. An attacker can embed malicious instructions in a shared document, which Copilot will then copy into downstream documents, potentially causing harm. The attack exploits a Cross-Domain Prompt Injection Attack (XPIA) mechanism, where Copilot alters documents based on external inputs, and can be triggered through various means, including attachments, OneDrive searches, and "Edit with Copilot" functionality. AI summary