← the record
WF-HHAQBE

Microsoft 365 Copilot Vulnerability Allegedly Allowed File Access Without Audit Log Entry

A vulnerability in Microsoft 365 Copilot reportedly allowed users to access and summarize files without generating audit log entries, allegedly undermining traceability and compliance. Security researcher Zack Korman disclosed the issue to Microsoft, which reportedly classified it as "important" and fixed it on August 17, 2025, but reportedly chose not to notify customers or assign a CVE.

Date it happened
2025-07-04
Organisation involved
Microsoft
Product, system or model
Microsoft 365 Copilot
Where this came from
Share this incident
XLinkedInFacebookWhatsAppEmail
Attribution

This incident was imported from AI Incident Database and is used under CC BY-SA 4.0. Our additions to it — the structured fields, the translation, the checks against other reports — are published under the same licence.

This is a record of what was reported, not a finding that anyone broke the law. If it names your organisation and you believe it is wrong, the corrections process is free and open to everyone.

Microsoft 365 Copilot Vulnerability Allegedly Allowed File Access Without Audit Log Entry — Wayward Fowl