Thousands of GitHub repositories exposed via Microsoft Copilot




  • Copilot has access to private GitHub repositories, researchers found
  • The repositories were public at some point, and Bing cached them
  • The caching behavior is “acceptable” says Microsoft

Thousands of private GitHub repositories, some of which possibly contained credentials and other secrets, are being exposed through Microsoft Copilot, the company’s Generative Artificial Intelligence (GenAI) virtual assistant, experts have warned.

Cybersecurity researchers from Lasso reported their findings to Microsoft but got a mixed response.

https://cdn.mos.cms.futurecdn.net/aNSyW6WY7t2j9fMrzaPPVb-1200-80.jpeg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img