AI News

Critical Vulnerability in Microsoft 365 Copilot Exposes Confidential Data to AI Summarization

A significant security oversight in Microsoft 365 Copilot has been uncovered, revealing that the AI assistant has been summarizing confidential emails since late January 2026. This glitch, which bypassed established Data Loss Prevention (DLP) policies and sensitivity labels, allowed the AI to access and process restricted information stored in users' "Sent Items" and "Drafts" folders.

For enterprises relying on Microsoft's ecosystem to maintain strict data governance, this incident highlights the growing complexities of integrating generative AI into secure corporate environments. Microsoft has acknowledged the issue, attributed to a code error, and has begun deploying a fix, though the full scope of the impact remains under investigation.

The Mechanics of the Breach

The vulnerability, tracked under the advisory ID CW1226324, specifically affects the Copilot "work tab" chat feature. Under normal operations, Microsoft 365 Copilot is designed to respect organizational compliance boundaries, meaning it should not retrieve or summarize content flagged as confidential or restricted by DLP policies.

However, an "unspecified code error" effectively neutralized these safeguards for specific email categories. When a user interacted with Copilot, the AI was able to pull data from emails that had been explicitly labeled as sensitive, provided those emails were located in the user's sent or draft folders.

The following table outlines the discrepancy between the intended security protocols and the behavior exhibited during this incident:

Table: Security Protocol Failure Analysis

Feature Intended Security Behavior Behavior During Glitch
Sensitivity Labels AI blocks access to documents/emails
marked "Confidential" or "Internal Only".
AI accessed and summarized labeled
emails in Sent/Drafts folders.
DLP Policies Prevents data extraction from
protected sources to unauthorized tools.
Policies were bypassed, allowing
data to flow into Copilot's context window.
Folder Scope Scanning limited to user-authorized
inbox items and safe directories.
Erroneously expanded active scanning
to include Sent Items and Drafts.

This failure is particularly concerning because "Sent Items" and "Drafts" often contain the most sensitive versions of internal communications—unpolished strategic documents, internal financial discussions, or personnel matters—that are not yet ready for broader distribution or have been archived for record-keeping.

Timeline of Detection and Response

The issue was first detected on January 21, 2026, yet it persisted for several weeks before a comprehensive remediation plan was enacted. Microsoft publicly confirmed the bug in mid-February, stating that the error allowed the AI to ignore the sensitivity labels that IT administrators rely on to secure their digital perimeters.

According to reports, the rollout of the fix began in early February. Microsoft is currently reaching out to a subset of affected users to verify the efficacy of the patch, but they have not provided a definitive timeline for when the issue will be fully resolved globally. The incident is currently flagged as an advisory, a classification often reserved for issues with a limited scope, though the potential for data leakage in high-compliance industries suggests the impact could be qualitative rather than merely quantitative.

Implications for Enterprise AI Adoption

This incident serves as a stark reminder of the "black box" nature of AI integration in legacy IT infrastructures. While organizations are rushing to adopt tools like Microsoft 365 Copilot to boost productivity, the security architecture governing these tools must evolve to handle non-deterministic behaviors.

Key Security Concerns:

  • Erosion of Trust: When security labels are ignored by the underlying infrastructure, trust in automated compliance tools diminishes. IT leaders may hesitate to deploy further AI capabilities without stronger assurances.
  • Shadow Access: The bug illustrates that AI agents often operate with different permissions or access pathways than standard users or legacy search tools, creating "shadow access" points that traditional audits might miss.
  • Compliance Violations: For sectors like healthcare and finance, even a temporary exposure of confidential drafts to an AI summarizer could constitute a reportable data breach under regulations like GDPR or HIPAA.

Recommendations for IT Administrators

In light of this advisory, Creati.ai recommends that IT administrators and security operations centers (SOCs) take immediate proactive steps. While Microsoft is deploying a fix, relying solely on vendor patches is insufficient for high-security environments.

  • Review Advisory CW1226324: Administrators should continuously monitor the status of this specific advisory in the Microsoft 365 Admin Center to confirm when their tenant receives the patch.
  • Audit AI Interactions: Where possible, review audit logs for Copilot interactions that occurred between late January and mid-February, specifically looking for queries related to sensitive keywords.
  • Reinforce Employee Training: Remind staff that while AI tools are powerful, they should avoid inputting or referencing highly classified information in AI chat interfaces until the stability of these tools is guaranteed.

As the industry moves forward, the expectation is that vendors like Microsoft will implement more rigorous "fail-closed" mechanisms—where an AI defaults to denying access if a security policy cannot be verified—rather than "fail-open" errors that expose sensitive data. This bug is likely to drive a new standard of validation for AI permissions within enterprise suites.

Featured
ThumbnailCreator.com
AI-powered tool for creating stunning, professional YouTube thumbnails quickly and easily.
Video Watermark Remover
AI Video Watermark Remover – Clean Sora 2 & Any Video Watermarks!
AdsCreator.com
Generate polished, on‑brand ad creatives from any website URL instantly for Meta, Google, and Stories.
Refly.ai
Refly.AI empowers non-technical creators to automate workflows using natural language and a visual canvas.
Elser AI
All-in-one AI video creation studio that turns any text and images into full videos up to 30 minutes.
BGRemover
Easily remove image backgrounds online with SharkFoto BGRemover.
FineVoice
Clone, Design, and Create Expressive AI Voices in Seconds, with Perfect Sound Effects and Music.
VoxDeck
Next-gen AI presentation maker,Turn your ideas & docs into attention-grabbing slides with AI.
Qoder
Qoder is an agentic coding platform for real software, Free to use the best model in preview.
FixArt AI
FixArt AI offers free, unrestricted AI tools for image and video generation without sign-up.
Flowith
Flowith is a canvas-based agentic workspace which offers free 🍌Nano Banana Pro and other effective models...
Skywork.ai
Skywork AI is an innovative tool to enhance productivity using AI.
SharkFoto
SharkFoto is an all-in-one AI-powered platform for creating and editing videos, images, and music efficiently.
Pippit
Elevate your content creation with Pippit's powerful AI tools!
Funy AI
AI bikini & kiss videos from images or text. Try the AI Clothes Changer & Image Generator!
KiloClaw
Hosted OpenClaw agent: one-click deploy, 500+ models, secure infrastructure, and automated agent management for teams and developers.
Yollo AI
Chat & create with your AI companion. Image to Video, AI Image Generator.
SuperMaker AI Video Generator
Create stunning videos, music, and images effortlessly with SuperMaker.
AI Clothes Changer by SharkFoto
AI Clothes Changer by SharkFoto instantly lets you virtually try on outfits with realistic fit, texture, and lighting.
AnimeShorts
Create stunning anime shorts effortlessly with cutting-edge AI technology.
InstantChapters
Create Youtube Chapters with one click and increase watch time and video SEO thanks to keyword optimized timestamps.
wan 2.7-image
A controllable AI image generator for precise faces, palettes, text, and visual continuity.
AI Video API: Seedance 2.0 Here
Unified AI video API offering top-generation models through one key at lower cost.
WhatsApp AI Sales
WABot is a WhatsApp AI sales copilot that delivers real-time scripts, translations, and intent detection.
insmelo AI Music Generator
AI-driven music generator that turns prompts, lyrics, or uploads into polished, royalty-free songs in about a minute.
BeatMV
Web-based AI platform that turns songs into cinematic music videos and creates music with AI.
Kirkify
Kirkify AI instantly creates viral face swap memes with signature neon-glitch aesthetics for meme creators.
UNI-1 AI
UNI-1 is a unified image generation model combining visual reasoning with high-fidelity image synthesis.
Wan 2.7
Professional-grade AI video model with precise motion control and multi-view consistency.
Text to Music
Turn text or lyrics into full, studio-quality songs with AI-generated vocals, instruments, and multi-track exports.
Iara Chat
Iara Chat: An AI-powered productivity and communication assistant.
kinovi - Seedance 2.0 - Real Man AI Video
Free AI video generator with realistic human output, no watermark, and full commercial use rights.
Video Sora 2
Sora 2 AI turns text or images into short, physics-accurate social and eCommerce videos in minutes.
Tome AI PPT
AI-powered presentation maker that generates, beautifies, and exports professional slide decks in minutes.
Lyria3 AI
AI music generator that creates high-fidelity, fully produced songs from text prompts, lyrics, and styles instantly.
Atoms
AI-driven platform that builds full‑stack apps and websites in minutes using multi‑agent automation, no coding required.
AI Pet Video Generator
Create viral, shareable pet videos from photos using AI-driven templates and instant HD exports for social platforms.
Paper Banana
AI-powered tool to convert academic text into publication-ready methodological diagrams and precise statistical plots instantly.
Ampere.SH
Free managed OpenClaw hosting. Deploy AI agents in 60 seconds with $500 Claude credits.
Hitem3D
Hitem3D converts a single image into high-resolution, production-ready 3D models using AI.
Palix AI
All-in-one AI platform for creators to generate images, videos, and music with unified credits.
HookTide
AI-powered LinkedIn growth platform that learns your voice to create content, engage, and analyze performance.
GenPPT.AI
AI-driven PPT maker that creates, beautifies, and exports professional PowerPoint presentations with speaker notes and charts in minutes.
Create WhatsApp Link
Free WhatsApp link and QR generator with analytics, branded links, routing, and multi-agent chat features.
Seedance 20 Video
Seedance 2 is a multimodal AI video generator delivering consistent characters, multi-shot storytelling, and native audio at 2K.
Gobii
Gobii lets teams create 24/7 autonomous digital workers to automate web research and routine tasks.
Veemo - AI Video Generator
Veemo AI is an all-in-one platform that quickly generates high-quality videos and images from text or images.
Free AI Video Maker & Generator
Free AI Video Maker & Generator – Unlimited, No Sign-Up
ainanobanana2
Nano Banana 2 generates pro-quality 4K images in 4–6 seconds with precise text rendering and subject consistency.
GLM Image
GLM Image combines hybrid AR and diffusion models to generate high-fidelity AI images with exceptional text rendering.
AI FIRST
Conversational AI assistant automating research, browser tasks, web scraping, and file management through natural language.
WhatsApp Warmup Tool
AI-powered WhatsApp warmup tool automates bulk messaging while preventing account bans.
AirMusic
AirMusic.ai generates high-quality AI music tracks from text prompts with style, mood customization, and stems export.
Manga Translator AI
AI Manga Translator instantly translates manga images into multiple languages online.
TextToHuman
Free AI humanizer that instantly rewrites AI text into natural, human-like writing. No signup required.
Remy - Newsletter Summarizer
Remy automates newsletter management by summarizing emails into digestible insights.
Telegram Group Bot
TGDesk is an all-in-one Telegram Group Bot to capture leads, boost engagement, and grow communities.
FalcoCut
FalcoCut: web-based AI platform for video translation, avatar videos, voice cloning, face-swap and short video generation.

Microsoft Copilot Bug Exposed Confidential Emails to AI for Weeks

Microsoft confirms a critical bug allowed Copilot AI to summarize confidential emails since January, bypassing data loss prevention policies in Microsoft 365.