+0.40 Microsoft 365 Copilot – Arbitrary Data Exfiltration via Mermaid Diagrams (www.adamlogue.com)
218 points by gnabgib 126 days ago | 49 comments on HN | Moderate positive ~lite vlite-1.4
Summary ~lite Data Protection Acknowledges
Article discusses and fixes a data exfiltration vulnerability in Microsoft 365 Copilot
EQ 0.70
SO 0.80
TD 0.60
Lite evaluation by llama-4-scout-wai · editorial channel only · no per-section breakdown available
Longitudinal · 3 evals
+1 0 −1 HN
Audit Trail 13 entries
2026-02-28 08:21 eval_success Light evaluated: Moderate positive (0.40) - -
2026-02-28 08:21 model_divergence Cross-model spread 0.40 exceeds threshold (2 models) - -
2026-02-28 08:21 eval Evaluated by llama-4-scout-wai: +0.40 (Moderate positive)
reasoning
ED - Technical article on data exfiltration vulnerability
2026-02-28 08:21 rater_validation_warn Light validation warnings for model llama-4-scout-wai: 0W 1R - -
2026-02-28 08:13 eval_success Light evaluated: Neutral (0.00) - -
2026-02-28 08:13 rater_validation_warn Light validation warnings for model llama-3.3-70b-wai: 0W 1R - -
2026-02-28 08:13 eval Evaluated by llama-3.3-70b-wai: 0.00 (Neutral) 0.00
reasoning
Tech blog neutral stance
2026-02-28 08:09 eval_success Light evaluated: Neutral (0.00) - -
2026-02-28 08:09 eval Evaluated by llama-3.3-70b-wai: 0.00 (Neutral)
reasoning
Tech blog neutral stance
2026-02-28 08:09 rater_validation_warn Light validation warnings for model llama-3.3-70b-wai: 0W 1R - -
2026-02-26 06:54 dlq Dead-lettered after 1 attempts: Microsoft 365 Copilot – Arbitrary Data Exfiltration via Mermaid Diagrams - -
2026-02-26 06:46 credit_exhausted Credit balance too low, retrying in 245s - -
2026-02-26 06:41 credit_exhausted Credit balance too low, retrying in 274s - -