Thousands of github repositories exposed through Microsoft Copilot




  • The co -pilot has access to Github’s private repositories, the researchers found
  • The repositories were public at some point, and Bing stored them in cache
  • Cache storage behavior is “acceptable,” says Microsoft

Thousands of Github private repositories, some of which possibly contain credentials and other secrets, are exposed through Microsoft Copilot, the company’s generative virtual assistant of artificial intelligence (Genai) of the company, experts have warned.

Lasso’s cybersecurity researchers reported their findings to Microsoft, but obtained a mixed response.

Leave a Comment

Your email address will not be published. Required fields are marked *