LiveBreach Intelligence: data breaches, leaks & ransomware, tracked as they surfaceOngoing protection: GalaxyWarden →
Recent BreachesData breach tracker

Recent Breaches › Microsoft Copilot SearchLeak Flaw Enables 1-Click Data Theft

HIGH severityReportedHow we verify

Microsoft Copilot SearchLeak Flaw Enables 1-Click Data Theft: What Was Reportedly Exposed & What To Do

RBRecent Breaches Breach Intelligence·June 4, 2026
Microsoft Copilot SearchLeak Flaw Enables 1-Click Data Theft

Reported June 4, 2026.

HIGH
Severity
3
Data types exposed
June 4, 2026
Disclosed
ShareXLinkedInFacebookRedditWhatsAppTelegram

Microsoft Copilot SearchLeak flaw enables one-click data theft, reported June 4, 2026. An undisclosed number of users had emails, files, and credentials exposed; check your Microsoft account activity and reset credentials if you may be affected.

Severity & verification
HIGH severityReported
Account credentials exposed.
Based on public reporting. Not independently confirmed by the named organization.
Check your exposure
See every leak and listing tied to your email. We can’t confirm any single incident against the sources we search, so we won’t pretend to. 15-second check, no card, no account. Details go to your inbox.

By running your scan you agree to the Terms and Conditions and the Privacy Policy, and to GalaxyWarden emailing you the results of this scan.

On June 4, 2026, researchers disclosed a vulnerability in Microsoft Copilot for Microsoft 365 Enterprise, tracked as CVE-2026-42824. The flaw, assigned a CVSS score of 6.5, permitted a prompt-injection attack that could exfiltrate data when a user interacted with a crafted link. Microsoft has applied a patch. No user action is required, and no exploitation in the wild has been reported. The number of people or organizations affected is not known.

Inside the incident

The reported issue, referred to as SearchLeak, involved a prompt-injection technique targeting Microsoft Copilot in the M365 Enterprise environment. According to the disclosure, an attacker could craft a link that, once opened, directed the Copilot service to retrieve and send out emails, meeting notes, OneDrive and SharePoint files, passwords, and other sensitive documents.

The vulnerability was made public on June 4, 2026. Microsoft confirmed the patch and stated that no further user intervention was needed. Details on the scale of any exposure or the timeline of discovery have not been released.

How a breach like this happens

Prompt-injection attacks occur when an attacker supplies input that alters the intended behavior of an AI system. In enterprise copilots connected to email, document stores, and identity services, the model may be instructed to locate and transmit specific content without the user realizing the request has been modified.

Such flaws typically arise when user-supplied text is processed without sufficient separation between instructions and data. Once the model follows the injected directive, it can access the same repositories and credentials available to the legitimate session and forward results to an external destination.

Microsoft and its sector

Microsoft supplies cloud productivity and collaboration services used by organizations worldwide. Microsoft 365 Enterprise integrates email, file storage, meeting records, and authentication systems into a single environment that many businesses rely on for daily operations.

A flaw in a component that can read across these services is consequential because the data involved often includes internal communications, project files, and access credentials that organizations treat as sensitive.

The information in question

The disclosure identifies emails, meeting notes, OneDrive and SharePoint files, passwords, and other sensitive documents as the categories that could be retrieved. The exact contents that may have been accessible in any specific environment have not been confirmed.

Organizations that deploy M365 Enterprise commonly store business correspondence, internal records, and authentication material within the same tenant. Without a published inventory of exposed records, the precise scope for any given customer remains unconfirmed.

Why it matters

When an AI assistant can be directed to collect and transmit data from connected services, the primary risk is unauthorized disclosure of information that users or organizations intended to keep internal. Credentials and document contents can be used for further access or for competitive or regulatory purposes.

For the affected organization, the incident highlights the need to review logging and access controls around AI features even after a patch is applied. For individuals whose information resides in the tenant, the concern is that material they did not intend to share may have left the environment.

Were you affected?

Check with your organization’s IT or security team to learn whether your Microsoft 365 tenant uses Copilot and whether any internal review of the patched vulnerability has been completed. Review recent account activity for any unexpected access to email or files.

Users can also run a free exposure scan of their email address against known breach data sets to see whether their information appears in previously published records.

AICompiled with AI assistance from public sources and published under our editorial standards.

Editorial & sourcing policy
Recent Breaches is a breach-monitoring service and news aggregator. We do not exfiltrate, host, purchase, or redistribute stolen data, and we do not hold the data claimed in leak-site listings. Incidents are compiled from publicly accessible sources and threat-intelligence platforms and are reported as claims attributed to their source. We promptly correct or remove material shown to be inaccurate — write to support@galaxywarden.com or press@recentbreaches.com.
Check if you’re exposed →

How this breach connects

Company

Method

CompanyMicrosoft security record
59/100
DoxxScan™ · Elevated doxx risk
C+ 73Fair record

3 reported incidents on record.

See Microsoft’s full breach history →
RelatedMore incidents at Microsoft

More recent breaches

Veil#Drop Framework Delivers PureLog Infostealer via BlogspotJuly 1, 2026AdaptHealth Patient Data Stolen via Contractor PhishingJune 27, 2026Meta Discloses 20K Instagram Accounts Hijacked via AI Support ToolJune 5, 2026OpenAI Confirms Breach via TanStack Supply Chain AttackMay 14, 2026

Latest breaches

Read GalaxyWarden’s full analysis of the Microsoft Copilot SearchLeak Flaw Enables 1-Click Data Theft →

Source: Dark Reading

Based on public reporting

Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.

Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.

ShareXLinkedInFacebookRedditWhatsAppTelegram