Echoleak
The latest Echoleak coverage — news, analysis, and updates from the WindowsNews.AI desk.
Microsoft AI Leadership: How Security, On-Device Models & Strategic Vision Are Redefining Windows
Microsoft's artificial intelligence strategy is experiencing a remarkable convergence of visibility, driven not by a single breakthrough but by the simultaneous alignment of leadership vision,...
81% of Aussie SMBs Paste Confidential Data Into Free AI Tools, HP Study Warns
A survey commissioned by HP and Microsoft has found that 81% of Australian small and medium businesses using free generative AI tools regularly submit confidential company information through them,...
Microsoft Copilot’s EchoLeak Flaw Proves GenAI Must Embrace Zero Trust — Or Risk Catastrophic Data Leaks
A zero-click prompt injection flaw in Microsoft 365 Copilot, discovered in January by security researchers at Aim Labs, allowed attackers to trick the AI assistant into silently exfiltrating...
Microsoft Decouples Copilot from OneDrive File Management on iOS, Forcing a Two-App Workflow
Microsoft is stripping advanced OneDrive file-management capabilities from the Microsoft 365 Copilot app for iPhone and iPad, redirecting users to the standalone OneDrive app for tasks like folder...
Microsoft 365 Copilot’s Missing Audit Logs: The Hidden Risk Behind Zero-Click Data Leaks
When Microsoft patched CVE-2025-32711 in June 2025, it closed a critical zero-click vulnerability that allowed attackers to silently siphon sensitive data through Microsoft 365 Copilot. Dubbed...
Microsoft's AI Ambitions: Navigating Security, Competition, and Regulation
Microsoft's aggressive push into the AI arena positions it as a major player, but also exposes it to significant challenges. The company's strategic investments in OpenAI and its integration of AI...
Microsoft 365 Copilot Zero-Click Hack Echoleak Exposes Enterprise Data via Emails
Security researchers have uncovered a critical zero-click vulnerability in Microsoft 365 Copilot, marking the first known exploit of its kind in an AI-powered productivity assistant. Dubbed...
Microsoft 365 Copilot Zero-Click Flaw Let Hackers Breach Enterprise Data
In early 2025, cybersecurity researchers uncovered a critical zero-click vulnerability in Microsoft 365 Copilot, dubbed EchoLeak, which could allow attackers to execute malicious code without user...
Microsoft Copilot Zero-Click Vulnerability EchoLeak: What Enterprises Need to Know
Microsoft Copilot, the AI-powered productivity assistant integrated across Microsoft 365, has become an indispensable tool for enterprises worldwide. However, the recent discovery of the EchoLeak...
Zero-click Echoleak attack targets Microsoft 365 Copilot via NLP model exploits
The cybersecurity landscape is witnessing a paradigm shift with the emergence of the Echoleak attack, a sophisticated zero-click exploit targeting AI-powered enterprise systems like Microsoft 365...
EchoLeak: Microsoft Copilot's Zero-Click AI Vulnerability Exposed in 2025
In early 2025, cybersecurity researchers from Aim Labs made a startling discovery: a critical zero-click vulnerability in Microsoft Copilot, now known as 'EchoLeak.' Officially designated as...
EchoLeak zero-click exploit steals enterprise data via Microsoft 365 Copilot AI flaw
Microsoft 365 Copilot, the AI-powered productivity assistant, faces a critical security threat with the newly discovered EchoLeak vulnerability (CVE-2025-32711). This zero-click exploit allows...