Eitan Worcel retweetledi

Microsoft isn’t disclosing this so: M365 Copilot allowed users to access files without producing an audit log. All you had to do was ask Copilot to not link to the file. You don’t even have to ask; it sometimes just happens. If your org uses Copilot your audit log is likely wrong
Zack Korman@ZackKorman
Microsoft isn’t just not issuing a CVE, they’re actually not going to disclose this issue at all.
English
























