Signal

Microsoft Copilot for Word vulnerable to self-propagating AI worm via hidden prompts

Evidence first: scan the strongest sources, then decide whether to go deeper.

Published 2026-07-30 11:54 UTCUpdated 2026-07-31 01:13 UTC
rss
cveexploitssecurity_toolingincident_response
Source links open
Source links and full evidence are open here. Archive history, compare-over-time, alerts, exports, API, integrations, and workflow are paid.
No card needed for the free brief.
Evidence trail (top sources)
top sources (3 domains)domains are deduped. counts indicate coverage, not truth.
3 top sources shown
Hidden prompt can make Microsoft Copilot spread itself through your Word docs
Malwarebytes Threat Analysis · News · malwarebytes.com · 2026-07-30 12:58 UTC
Overview

A security researcher demonstrated a novel AI worm exploiting Microsoft 365 Copilot for Word by embedding hidden JSON-formatted instructions as white text on a white background inside Word documents.

Entities
MicrosoftMicrosoft 365 CopilotHåkon Måløy
Score total
1.18
Momentum 24h
3
Posts
3
Origins
3
Source types
1
Duplicate ratio
0%
Why now
  • The vulnerability was publicly disclosed in July 2026 after coordinated reporting to Microsoft.
  • The worm exploits a novel attack vector in widely used productivity software, raising immediate security concerns.
  • Multiple mitigations are in place, but reproduction of the worm chain shows ongoing risk.
Why it matters
  • The AI worm can silently alter document content, risking data integrity in business workflows.
  • It spreads through normal document sharing without traditional malware signatures, complicating detection.
  • Microsoft’s response highlights the need for robust defenses against AI prompt injection attacks.
LLM analysis
Topic mix: lowPromo risk: lowSource quality: medium
Recurring claims
  • Microsoft Copilot for Word can be exploited by hidden prompt injection to spread a self-propagating AI worm.
  • The AI worm spreads through normal document-sharing workflows without using macros or traditional malware.
  • Microsoft has implemented multiple mitigations but the worm chain remains reproducible.
How sources frame it
  • Microsoft: neutral
This incident highlights emerging risks from AI prompt injection attacks in mainstream productivity software and the challenges in mitigating self-propagating AI worms.
All evidence
All evidence
Hidden prompt can make Microsoft Copilot spread itself through your Word docs
Malwarebytes Threat Analysis · malwarebytes.com · 2026-07-30 12:58 UTC
Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents
thehackernews · thehackernews.com · 2026-07-30 11:54 UTC
Show filters & breakdown
Posts loaded: 0Publishers: 3Origin domains: 3Duplicates: -
Showing 3 / 0
Top publishers (this list)
  • CSO Online (1)
  • Malwarebytes Threat Analysis (1)
  • thehackernews (1)
Top origin domains (this list)
  • csoonline.com (1)
  • malwarebytes.com (1)
  • thehackernews.com (1)