Summary
A security researcher has demonstrated a dangerous Microsoft Word worm that can use hidden instructions to make Microsoft 365 Copilot silently alter documents and spread the malicious instructions. Despite multiple mitigation attempts by Microsoft over a 144-day disclosure period, the attack remains reproducible, highlighting a significant vulnerability in AI systems.