Varonis found a “Reprompt” attack that let a single link hijack Microsoft Copilot Personal sessions and exfiltrate data; Microsoft patched it in January 2026.
Under the EU’s AI Act, companies that build large foundation models – such as those underpinning popular chatbots like ...