Signal
Microsoft Copilot for Word vulnerable to self-propagating AI worm via hidden prompts
Evidence first: scan the strongest sources, then decide whether to go deeper.
Published 2026-07-30 11:54 UTCUpdated 2026-07-31 01:13 UTC
rss
cveexploitssecurity_toolingincident_response
Source links open
Source links and full evidence are open here. Archive history, compare-over-time, alerts, exports, API, integrations, and workflow are paid.
No card needed for the free brief.
Evidence trail (top sources)
top sources (3 domains)domains are deduped. counts indicate coverage, not truth.3 top sources shown
Overview
A security researcher demonstrated a novel AI worm exploiting Microsoft 365 Copilot for Word by embedding hidden JSON-formatted instructions as white text on a white background inside Word documents.
Entities
MicrosoftMicrosoft 365 CopilotHåkon Måløy
Score total
1.18
Momentum 24h
3
Posts
3
Origins
3
Source types
1
Duplicate ratio
0%
Why now
- The vulnerability was publicly disclosed in July 2026 after coordinated reporting to Microsoft.
- The worm exploits a novel attack vector in widely used productivity software, raising immediate security concerns.
- Multiple mitigations are in place, but reproduction of the worm chain shows ongoing risk.
Why it matters
- The AI worm can silently alter document content, risking data integrity in business workflows.
- It spreads through normal document sharing without traditional malware signatures, complicating detection.
- Microsoft’s response highlights the need for robust defenses against AI prompt injection attacks.
LLM analysis
Topic mix: lowPromo risk: lowSource quality: medium
Recurring claims
- Microsoft Copilot for Word can be exploited by hidden prompt injection to spread a self-propagating AI worm.
- The AI worm spreads through normal document-sharing workflows without using macros or traditional malware.
- Microsoft has implemented multiple mitigations but the worm chain remains reproducible.
How sources frame it
- Microsoft: neutral
This incident highlights emerging risks from AI prompt injection attacks in mainstream productivity software and the challenges in mitigating self-propagating AI worms.
All evidence
All evidence
Microsoft confirms an AI worm is propagating through Copilot and other MS apps
CSO Online · csoonline.com · 2026-07-31 01:13 UTC
Hidden prompt can make Microsoft Copilot spread itself through your Word docs
Malwarebytes Threat Analysis · malwarebytes.com · 2026-07-30 12:58 UTC
Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents
thehackernews · thehackernews.com · 2026-07-30 11:54 UTC
Show filters & breakdown
Posts loaded: 0Publishers: 3Origin domains: 3Duplicates: -
Showing 3 / 0
Top publishers (this list)
- CSO Online (1)
- Malwarebytes Threat Analysis (1)
- thehackernews (1)
Top origin domains (this list)
- csoonline.com (1)
- malwarebytes.com (1)
- thehackernews.com (1)