A novel prompt injection technique, termed ‚AI Worming through Word,‘ has been identified, allowing for self-replicating attacks against Microsoft Word’s Copilot. This method involves embedding hidden instructions within documents, which Copilot then processes, potentially leading to unauthorized actions and propagation.
Source: Simon Willison