AI Security
Articles
- 1 min
Researchers can now read the hidden reasoning inside frontier AI APIs
A new paper says every major AI lab's encrypted "chain of thought" can be decoded from ordinary API responses, exposing private data users pasted into chats. Since OpenAI's o1, frontier labs have hidden their models' step-by-step reasoning behind cryptographic signatures, fearing rivals would distill it. The protection was supposed to be a hard confidentiality barrier. It was not. A team led by Alexander Panfilov and Jonas Geiping showed that a legitimate signed reasoning block pulled from one
1 minResearcher demonstrates self-replicating AI worm in Microsoft Copilot for Word
A security researcher has demonstrated a prompt injection attack that turns Microsoft Copilot for Word into a propagation vector for self-replicating malicious instructions. The attack, disclosed on July 28 after a 144-day coordination period with Microsoft, remains exploitable with all current mitigations deployed. How the worm works The attack begins when an attacker hides instructions inside a document, using techniques like white-on-white text. When a victim uses that document as source m
1 min


