One Copilot model refused. Another leaked secrets about half the time.
Adversa.ai recently posted an interesting Copilot CLI prompt-injection technique that I hadn't seen before. The basic trick is pretty clever: encrypt the malicious instructions so the filters mostly see ciphertext, then let Copilot helpfully decrypt the instructions itself. From there the chain can…
Read the full story at r/artificial ↗
Timeline · 1 report
- 2026-10-07 10:42 · r/artificial
One Copilot model refused. Another leaked secrets about half the time.